CVE-2023-21654
Published Sep 5, 2023Memory corruption in Audio during playback session with audio effects enabled.
Vendor/product archive
410 CVEs tagged to qualcomm / apq8096au_firmware — 118 Critical, 241 High, 51 Medium, 0 Low, 0 Unrated.
Memory corruption in Audio during playback session with audio effects enabled.
Memory Corruption in Audio while playing amrwbplus clips with modified content.
Memory corruption in WLAN while running doDriverCmd for an unspecific command.
Memory corruption due to untrusted pointer dereference in automotive during system call.
Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.
Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response.
Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.
Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms.
Memory corruption in WLAN due to use after free
Memory corruption in modem due to buffer overflow while processing a PPP packet
Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response
Memory corruption in Modem due to usage of Out-of-range pointer offset in UIM
Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload.
Information Disclosure in Graphics during GPU context switch.
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
Memory corruption due to access of uninitialized pointer in Bluetooth HOST while processing the AVRCP packet.
Information disclosure due to buffer over-read in WLAN while parsing NMF frame.
Memory corruption in Audio due to use of out-of-range pointer offset while Initiating a voice call session from user space with invalid session id.
Memory corruption due to improper access control in Qualcomm IPC.
Memory corruption due to configuration weakness in modem wile sending command to write protected files.
Memory corruption due to use after free in trusted application environment.
Memory corruption due to stack-based buffer overflow in Core
Transient DOS due to null pointer dereference in Bluetooth HOST while receiving an attribute protocol PDU with zero length data.
Transient DOS in Bluetooth HOST due to null pointer dereference when a mismatched argument is passed.
Transient DOS due to buffer over-read in WLAN while processing 802.11 management frames.