U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search Results (Refine Search)

Search Parameters:
  • Results Type: Overview
  • Keyword (text search): cpe:2.3:o:qualcomm:wcd9370_firmware:-:*:*:*:*:*:*:*
  • CPE Name Search: true
There are 650 matching records.
Displaying matches 21 through 40.
Vuln ID Summary CVSS Severity
CVE-2023-33120

Memory corruption in Audio when memory map command is executed consecutively in ADSP.

Published: January 02, 2024; 1:15:12 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33118

Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL.

Published: January 02, 2024; 1:15:12 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33117

Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command.

Published: January 02, 2024; 1:15:12 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33114

Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time.

Published: January 02, 2024; 1:15:12 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33113

Memory corruption when resource manager sends the host kernel a reply message with multiple fragments.

Published: January 02, 2024; 1:15:12 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33112

Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element.

Published: January 02, 2024; 1:15:11 AM -0500
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2023-33110

The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.

Published: January 02, 2024; 1:15:11 AM -0500
V3.1: 7.0 HIGH
V2.0:(not available)
CVE-2023-33109

Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.

Published: January 02, 2024; 1:15:11 AM -0500
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2023-33094

Memory corruption while running VK synchronization with KASAN enabled.

Published: January 02, 2024; 1:15:11 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33085

Memory corruption in wearables while processing data from AON.

Published: January 02, 2024; 1:15:10 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33062

Transient DOS in WLAN Firmware while parsing a BTM request.

Published: January 02, 2024; 1:15:10 AM -0500
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2023-33040

Transient DOS in Data Modem during DTLS handshake.

Published: January 02, 2024; 1:15:10 AM -0500
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2023-33038

Memory corruption while receiving a message in Bus Socket Transport Server.

Published: January 02, 2024; 1:15:10 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33037

Cryptographic issue in Automotive while unwrapping the key secs2d and verifying with RPMB data.

Published: January 02, 2024; 1:15:10 AM -0500
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2023-33036

Permanent DOS in Hypervisor while untrusted VM without PSCI support makes a PSCI call.

Published: January 02, 2024; 1:15:09 AM -0500
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2023-33033

Memory corruption in Audio during playback with speaker protection.

Published: January 02, 2024; 1:15:09 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33032

Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.

Published: January 02, 2024; 1:15:09 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33030

Memory corruption in HLOS while running playready use-case.

Published: January 02, 2024; 1:15:09 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33025

Memory corruption in Data Modem when a non-standard SDP body, during a VOLTE call.

Published: January 02, 2024; 1:15:08 AM -0500
V3.1: 9.8 CRITICAL
V2.0:(not available)
CVE-2023-33014

Information disclosure in Core services while processing a Diag command.

Published: January 02, 2024; 1:15:08 AM -0500
V3.1: 6.8 MEDIUM
V2.0:(not available)