This page lists publicly disclosed CVE vulnerabilities affecting qualcomm qca4010_firmware (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2023-28563 | Information disclosure in IOE Firmware while handling WMI command. | [email protected] | 6.1 | 0.05% | 2023-11-07 | 2026-06-17 |
| CVE-2023-28565 | Memory corruption in WLAN HAL while handling command streams through WMI interfaces. | [email protected] | 7.8 | 0.05% | 2023-09-05 | 2026-06-17 |
| CVE-2023-28560 | Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload. | [email protected] | 7.8 | 0.11% | 2023-09-05 | 2026-06-17 |
| CVE-2023-28559 | Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload. | [email protected] | 7.8 | 0.05% | 2023-09-05 | 2026-06-17 |
| CVE-2023-21625 | Information disclosure in Network Services due to buffer over-read while the device receives DNS response. | [email protected] | 8.2 | 0.30% | 2023-08-08 | 2026-06-17 |
| CVE-2023-21628 | Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command. | [email protected] | 8.4 | 0.05% | 2023-06-06 | 2026-06-17 |
| CVE-2022-40505 | Information disclosure due to buffer over-read in Modem while parsing DNS hostname. | [email protected] | 8.2 | 0.35% | 2023-05-02 | 2026-06-17 |
| CVE-2022-33291 | Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length. | [email protected] | 8.2 | 0.35% | 2023-04-13 | 2026-06-17 |
| CVE-2022-33287 | Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet. | [email protected] | 8.2 | 0.35% | 2023-04-13 | 2026-06-17 |
| CVE-2022-33222 | Information disclosure due to buffer over-read while parsing DNS response packets in Modem. | [email protected] | 8.2 | 0.35% | 2023-04-13 | 2026-06-17 |
| CVE-2022-25731 | Information disclosure in modem due to buffer over-read while processing packets from DNS server | [email protected] | 7.5 | 0.35% | 2023-04-13 | 2026-06-17 |
| CVE-2022-25730 | Information disclosure in modem due to improper check of IP type while processing DNS server query | [email protected] | 8.2 | 0.35% | 2023-04-13 | 2026-06-17 |
| CVE-2022-25655 | Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload. | [email protected] | 8.4 | 0.05% | 2023-03-10 | 2026-06-17 |
| CVE-2022-33229 | Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets. | [email protected] | 8.2 | 0.38% | 2023-02-11 | 2026-06-17 |
| CVE-2022-25738 | Information disclosure in modem due to buffer over-red while performing checksum of packet received | [email protected] | 8.2 | 0.38% | 2023-02-11 | 2026-06-17 |
| CVE-2022-25734 | Denial of service in modem due to missing null check while processing IP packets with padding | [email protected] | 7.5 | 0.41% | 2023-02-11 | 2026-06-17 |
| CVE-2022-25733 | Denial of service in modem due to null pointer dereference while processing DNS packets | [email protected] | 7.5 | 0.36% | 2023-02-11 | 2026-06-17 |
| CVE-2022-25742 | Denial of service in modem due to infinite loop while parsing IGMPv2 packet from server in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music | [email protected] | 7.5 | 0.38% | 2022-11-15 | 2026-06-17 |
| CVE-2022-25727 | Memory Corruption in modem due to improper length check while copying into memory in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music | [email protected] | 9.8 | 0.40% | 2022-11-15 | 2026-06-17 |
| CVE-2022-25674 | Cryptographic issues in WLAN during the group key handshake of the WPA/WPA2 protocol in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music | [email protected] | 6.5 | 0.28% | 2022-11-15 | 2026-06-17 |