Qualcomm
Qualcomm Sc8180x-ac Firmware: vulnerabilities and CVEs
Qualcomm Sc8180x-ac Firmware has 33 published vulnerabilities, 0 of them in the last 12 months. 3 are rated critical and 0 are listed by CISA as actively exploited.
CVEs33
Last 12 months0
Critical3
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-21469 | High (7.8) | 0.10% | — | Jul 1, 2024 | Memory corruption when an invoke call and a TEE call are bound for the same trusted application. |
| CVE-2024-21465 | High (7.8) | 0.10% | — | Jul 1, 2024 | Memory corruption while processing key blob passed by the user. |
| CVE-2024-21462 | Medium (5.5) | 0.09% | — | Jul 1, 2024 | Transient DOS while loading the TA ELF file. |
| CVE-2024-21461 | High (7.8) | 0.10% | — | Jul 1, 2024 | Memory corruption while performing finish HMAC operation when context is freed by keymaster. |
| CVE-2023-43554 | High (7.8) | 0.10% | — | Jul 1, 2024 | Memory corruption while processing IOCTL handler in FastRPC. |
| CVE-2023-33081 | High (7.5) | 0.47% | — | Dec 5, 2023 | Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast. |
| CVE-2023-33080 | High (7.5) | 0.34% | — | Dec 5, 2023 | Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame. |
| CVE-2023-33022 | High (7.8) | 0.16% | — | Dec 5, 2023 | Memory corruption in HLOS while invoking IOCTL calls from user-space. |
| CVE-2023-33018 | High (7.8) | 0.11% | — | Dec 5, 2023 | Memory corruption while using the UIM diag command to get the operators name. |
| CVE-2023-33017 | High (7.8) | 0.16% | — | Dec 5, 2023 | Memory corruption in Boot while running a ListVars test in UEFI Menu during boot. |
| CVE-2023-33027 | High (7.5) | 0.39% | — | Oct 3, 2023 | Transient DOS in WLAN Firmware while parsing rsn ies. |
| CVE-2023-24849 | High (7.5) | 0.36% | — | Oct 3, 2023 | Information Disclosure in data Modem while parsing an FMTP line in an SDP message. |
| CVE-2023-24848 | High (7.5) | 0.36% | — | Oct 3, 2023 | Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value. |
| CVE-2023-24847 | High (7.5) | 0.39% | — | Oct 3, 2023 | Transient DOS in Modem while allocating DSM items. |
| CVE-2023-22385 | Critical (9.8) | 0.42% | — | Oct 3, 2023 | Memory Corruption in Data Modem while making a MO call or MT VOLTE call. |
| CVE-2023-33015 | High (7.5) | 0.38% | — | Sep 5, 2023 | Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame. |
| CVE-2023-28573 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while parsing WMI command parameters. |
| CVE-2023-28567 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while handling command through WMI interfaces. |
| CVE-2023-28565 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while handling command streams through WMI interfaces. |
| CVE-2023-28564 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while passing command parameters through WMI interfaces. |
| CVE-2023-28562 | Critical (9.8) | 0.43% | — | Sep 5, 2023 | Memory corruption while handling payloads from remote ESL. |
| CVE-2023-28560 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload. |
| CVE-2022-33275 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range. |
| CVE-2023-21631 | Critical (9.8) | 0.36% | — | Jul 4, 2023 | Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network. |
| CVE-2023-21659 | High (7.5) | 0.38% | — | Jun 6, 2023 | Transient DOS in WLAN Firmware while processing frames with missing header fields. |
| CVE-2023-21628 | High (7.8) | 0.12% | — | Jun 6, 2023 | Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command. |
| CVE-2022-40529 | High (7.8) | 0.10% | — | Jun 6, 2023 | Memory corruption due to improper access control in kernel while processing a mapping request from root process. |
| CVE-2022-40523 | Medium (5.5) | 0.11% | — | Jun 6, 2023 | Information disclosure in Kernel due to indirect branch misprediction. |
| CVE-2022-40521 | High (7.5) | 0.35% | — | Jun 6, 2023 | Transient DOS due to improper authorization in Modem |
| CVE-2022-40507 | High (7.8) | 1.3% | — | Jun 6, 2023 | Memory corruption due to double free in Core while mapping HLOS address to the list. |