Sd7c Firmware

Vendor:

First CVE: Jan 21, 2021 · Active for 5 years

138
Total CVEs
More Total CVEs than 99% of tracked products
46.0
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
7.6
Avg CVSS
Higher Avg CVSS than 64% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Sd7c Firmware over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 21, 2021
5 years ago
Most Recent CVE
Sep 5, 2023
1,056 days ago

CVE Severity & Scoring

Sd7c Firmware138 CVEs
All CVEs352,785 CVEs
MediumHighCritical
Attack Vector
Local82 (59.4%)
Network46 (33.3%)
Unknown0 (0.0%)
Physical3 (2.2%)
Adjacent Network7 (5.1%)
Attack Complexity
Low136 (98.6%)
High2 (1.4%)
Unknown0 (0.0%)
User Interaction
None137 (99.3%)
Unknown0 (0.0%)
Required1 (0.7%)
Privileges Required
Low77 (55.8%)
High5 (3.6%)
None56 (40.6%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (138 CVEs).

138 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer
Oct 19, 20229.830NONO
Possible heap overflow due to improper length check of domain while parsing the DNS response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IO
Nov 12, 20219.830NONO
Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electron
Oct 20, 20219.130NONO
Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame.
Feb 12, 20239.829NONO
Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect
Sep 8, 20217.529NONO
Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.
Aug 8, 20239.828NONO
Improper buffer size validation of DSM packet received can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronic
Jun 14, 20229.828NONO
Improper handling of permissions of a shared memory region can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, S
Apr 1, 20228.828NONO
Memory corruption in modem due to buffer overflow while processing a PPP packet
Mar 10, 20238.827NONO
An out-of-bounds read can occur while parsing a server certificate due to improper length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer
Sep 2, 20229.127NONO

Exploit Exposure

Signals from CVEs in this product scope (138 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (138 CVEs).

Media Mentions

Signals from CVEs in this product scope (138 CVEs).

Top CNAs Publishing CVEs For Sd7c Firmware

Top CWEs

Versions

No cataloged versions.