This page lists publicly disclosed CVE vulnerabilities affecting qualcomm sdx55m_firmware (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2021-30299 | Possible out of bound access in audio module due to lack of validation of user provided input. | [email protected] | 6.7 | 0.12% | 2024-11-22 | 2026-06-16 |
| CVE-2023-21667 | Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard. | [email protected] | 6.5 | 0.31% | 2023-09-05 | 2026-06-17 |
| CVE-2023-21664 | Memory Corruption in Core Platform while printing the response buffer in log. | [email protected] | 7.8 | 0.05% | 2023-09-05 | 2026-06-17 |
| CVE-2023-21662 | Memory corruption in Core Platform while printing the response buffer in log. | [email protected] | 7.8 | 0.05% | 2023-09-05 | 2026-06-17 |
| CVE-2023-21654 | Memory corruption in Audio during playback session with audio effects enabled. | [email protected] | 6.7 | 0.11% | 2023-09-05 | 2026-06-17 |
| CVE-2023-21646 | Transient DOS in Modem while processing invalid System Information Block 1. | [email protected] | 7.5 | 0.32% | 2023-09-05 | 2026-06-17 |
| CVE-2023-21644 | Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request. | [email protected] | 6.7 | 0.11% | 2023-09-05 | 2026-06-17 |
| CVE-2023-21636 | Memory Corruption due to improper validation of array index in Linux while updating adn record. | [email protected] | 6.7 | 0.11% | 2023-09-05 | 2026-06-17 |
| CVE-2022-40524 | Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service. | [email protected] | 6.7 | 0.11% | 2023-09-05 | 2026-06-17 |
| CVE-2022-33220 | Information disclosure in Automotive multimedia due to buffer over-read. | [email protected] | 5.1 | 0.11% | 2023-09-05 | 2026-06-17 |
| CVE-2023-22666 | Memory Corruption in Audio while playing amrwbplus clips with modified content. | [email protected] | 8.4 | 0.05% | 2023-08-08 | 2026-06-17 |
| CVE-2023-21652 | Cryptographic issue in HLOS as derived keys used to encrypt/decrypt information is present on stack after use. | [email protected] | 7.7 | 0.05% | 2023-08-08 | 2026-06-17 |
| CVE-2023-21651 | Memory Corruption in Core due to incorrect type conversion or cast in secure_io_read/write function in TEE. | [email protected] | 9.3 | 0.05% | 2023-08-08 | 2026-06-17 |
| CVE-2023-21650 | Memory Corruption in GPS HLOS Driver when injectFdclData receives data with invalid data length. | [email protected] | 6.7 | 0.11% | 2023-08-08 | 2026-06-17 |
| CVE-2023-21649 | Memory corruption in WLAN while running doDriverCmd for an unspecific command. | [email protected] | 6.7 | 0.11% | 2023-08-08 | 2026-06-17 |
| CVE-2023-21647 | Information disclosure in Bluetooth when an GATT packet is received due to improper input validation. | [email protected] | 6.5 | 0.25% | 2023-08-08 | 2026-06-17 |
| CVE-2023-21627 | Memory corruption in Trusted Execution Environment while calling service API with invalid address. | [email protected] | 6.7 | 0.12% | 2023-08-08 | 2026-06-17 |
| CVE-2023-21626 | Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key. | [email protected] | 7.1 | 0.05% | 2023-08-08 | 2026-06-17 |
| CVE-2022-40510 | Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder. | [email protected] | 9.8 | 0.36% | 2023-08-08 | 2026-06-17 |
| CVE-2022-40537 | Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response. | [email protected] | 7.3 | 0.36% | 2023-03-10 | 2026-06-17 |