Sda845 Firmware

Vendor:

First CVE: Nov 28, 2018 · Active for 7 years

233
Total CVEs
More Total CVEs than 100% of tracked products
46.6
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
8.2
Avg CVSS
Higher Avg CVSS than 74% of tracked products
0.4%
KEV Rate
Higher KEV Rate than 97% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Sda845 Firmware over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 28, 2018
7 years ago
Most Recent CVE
Dec 5, 2023
966 days ago

CVE Severity & Scoring

Sda845 Firmware233 CVEs
All CVEs353,173 CVEs
MediumHighCritical
Attack Vector
Local139 (59.7%)
Network92 (39.5%)
Unknown0 (0.0%)
Physical1 (0.4%)
Adjacent Network1 (0.4%)
Attack Complexity
Low226 (97.0%)
High7 (3.0%)
Unknown0 (0.0%)
User Interaction
None233 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low139 (59.7%)
High0 (0.0%)
None94 (40.3%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (233 CVEs).

233 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Memory corruption in DSP Services during a remote call from HLOS to DSP.
Dec 5, 20237.864YESNO
u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bou
Nov 2, 20209.845NONO
u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdrago
Nov 12, 20209.831NONO
Buffer overflows while decoding setup message from Network due to lack of check of IE message length received from network in Snapdragon Auto, Snapdragon Compute, Snapdragon Consum
Jun 22, 20209.831NONO
Buffer overflow occur while playing the clip which is nonstandard due to lack of check of size duration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon
Jan 21, 20209.831NONO
Null-pointer dereference issue can occur while calculating string length when source string length is zero in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Sna
Jan 21, 20209.831NONO
While processing MT Secondary PDP request, Buffer overflow will happen due to incorrect calculation of buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT,
Dec 18, 20199.831NONO
Out of bound write while QoS DSCP mapping due to improper input validation for data received from association response frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Cons
Jul 30, 20209.830NONO
Out of bound write can happen due to lack of check of array index value while parsing SDP attribute for SAR in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdra
Jun 22, 20209.830NONO
Buffer overflow can occur in In WLAN firmware while unwraping data using CCMP cipher suite during parsing of EAPOL handshake frame in Snapdragon Auto, Snapdragon Compute, Snapdrago
Apr 16, 20209.830NONO

Exploit Exposure

Signals from CVEs in this product scope (233 CVEs).

CISA KEV
1 CVE
0.4% of CVEs· 97th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (233 CVEs).

Media Mentions

Signals from CVEs in this product scope (233 CVEs).

Top CNAs Publishing CVEs For Sda845 Firmware

Top CWEs

Versions

No cataloged versions.