See how qualcomm compares to other vendors in security performance
Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.
Cryptographic issue occurs due to use of insecure connection method while downloading.
Memory corruption while selecting the PLMN from SOR failed list.
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.
Memory Corruption when a corrupted ELF image with an oversized file size is read into a buffer without authentication.
While processing server certificate from IPSec server, certificate validation for subject alternative name API can cause heap overflow which can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile
Possible buffer overflow while updating ikev2 parameters for delete payloads received during informational exchange due to lack of check of input validation for certain parameters received from the ePDG server in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile
While loading dynamic fonts, a buffer overflow may occur if the number of segments in the font file is out of range in Snapdragon Mobile and Snapdragon Wear.
While parsing a Flac file with a corrupted comment block, a buffer over-read can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear.
While sending the response to a RILREQUESTGETSMSCADDRESS message, a buffer overflow can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear.
The popmsg function in qpopper 4.0.x before 4.0.5fc2 does not null terminate a message buffer after a call to Qvsnprintf, which could allow authenticated users to execute arbitrary code via a buffer overflow in a mdef command with a long macro name.
Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command.
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command.
Buffer overflow due to incorrect authorization in PLC FW
Multiple buffer overflows in Eudora Worldmail, possibly Worldmail 3 version 6.1.22.0, have unknown impact and attack vectors, as demonstrated by the (1) "Eudora WorldMail stack overflow" and (2) "Eudora WorldMail heap overflow" modules in VulnDisco Pack. NOTE: Some of these details are obtained from third party information. As of 20061118, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
Memory corruption while parsing the ML IE due to invalid frame content.
Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
Cryptographic issue in Data Modem due to improper authentication during TLS handshake.
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
Memory corruption in Modem while processing security related configuration before AS Security Exchange.
Memory corruption while processing specific files in Powerline Communication Firmware.
Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.
Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size.
Memory corruption in Core while processing control functions.
Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
Memory corruption in video while parsing invalid mp2 clip.
Memory corruption while processing MBSSID beacon containing several subelement IE.
Memory corruption in Core Services while executing the command for removing a single event listener.