Qualcomm
Qualcomm Sm4450 Firmware: vulnerabilities and CVEs
Qualcomm Sm4450 Firmware has 34 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.
CVEs34
Last 12 months0
Critical1
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-33040 | High (7.5) | 0.34% | — | Jan 2, 2024 | Transient DOS in Data Modem during DTLS handshake. |
| CVE-2023-33038 | High (7.8) | 0.12% | — | Jan 2, 2024 | Memory corruption while receiving a message in Bus Socket Transport Server. |
| CVE-2023-33037 | Medium (5.5) | 0.09% | — | Jan 2, 2024 | Cryptographic issue in Automotive while unwrapping the key secs2d and verifying with RPMB data. |
| CVE-2023-33033 | High (7.8) | 0.12% | — | Jan 2, 2024 | Memory corruption in Audio during playback with speaker protection. |
| CVE-2023-33030 | High (7.8) | 0.12% | — | Jan 2, 2024 | Memory corruption in HLOS while running playready use-case. |
| CVE-2023-33025 | Critical (9.8) | 0.39% | — | Jan 2, 2024 | Memory corruption in Data Modem when a non-standard SDP body, during a VOLTE call. |
| CVE-2023-33014 | Medium (6.8) | 0.18% | — | Jan 2, 2024 | Information disclosure in Core services while processing a Diag command. |
| CVE-2023-33029 | High (7.8) | 0.11% | — | Oct 3, 2023 | Memory corruption in DSP Service during a remote call from HLOS to DSP. |
| CVE-2023-28584 | High (7.5) | 0.35% | — | Sep 5, 2023 | Transient DOS in WLAN Host when a mobile station receives invalid channel in CSA IE while doing channel switch announcement (CSA). |
| CVE-2023-28567 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while handling command through WMI interfaces. |
| CVE-2023-28565 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while handling command streams through WMI interfaces. |
| CVE-2023-28564 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while passing command parameters through WMI interfaces. |
| CVE-2023-28560 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload. |
| CVE-2023-28559 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload. |
| CVE-2023-28558 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN handler while processing PhyID in Tx status handler. |
| CVE-2023-28557 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload. |
| CVE-2023-28549 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN HAL while parsing Rx buffer in processing TLV payload. |
| CVE-2023-28544 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption in WLAN while sending transmit command from HLOS to UTF handlers. |
| CVE-2022-33275 | High (7.8) | 0.12% | — | Sep 5, 2023 | Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range. |
| CVE-2023-28555 | High (7.5) | 0.41% | — | Aug 8, 2023 | Transient DOS in Audio while remapping channel buffer in media codec decoding. |
| CVE-2023-21670 | High (7.8) | 0.12% | — | Jun 6, 2023 | Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode. |
| CVE-2023-21659 | High (7.5) | 0.38% | — | Jun 6, 2023 | Transient DOS in WLAN Firmware while processing frames with missing header fields. |
| CVE-2023-21656 | High (7.8) | 0.12% | — | Jun 6, 2023 | Memory corruption in WLAN HOST while receiving an WMI event from firmware. |
| CVE-2023-21628 | High (7.8) | 0.12% | — | Jun 6, 2023 | Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command. |
| CVE-2022-40536 | High (7.5) | 0.40% | — | Jun 6, 2023 | Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network. |
| CVE-2022-40533 | Medium (5.5) | 0.10% | — | Jun 6, 2023 | Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request. |
| CVE-2022-40529 | High (7.8) | 0.10% | — | Jun 6, 2023 | Memory corruption due to improper access control in kernel while processing a mapping request from root process. |
| CVE-2022-40523 | Medium (5.5) | 0.11% | — | Jun 6, 2023 | Information disclosure in Kernel due to indirect branch misprediction. |
| CVE-2022-40521 | High (7.5) | 0.35% | — | Jun 6, 2023 | Transient DOS due to improper authorization in Modem |
| CVE-2022-40507 | High (7.8) | 1.3% | — | Jun 6, 2023 | Memory corruption due to double free in Core while mapping HLOS address to the list. |