Sda845 Firmware
Vendor:
First CVE: Nov 28, 2018 · Active for 7 years
233
Total CVEs
More Total CVEs than 100% of tracked products
46.6
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
8.2
Avg CVSS
Higher Avg CVSS than 74% of tracked products
0.4%
KEV Rate
Higher KEV Rate than 97% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Sda845 Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
Nov 28, 2018
7 years ago
Most Recent CVE
Dec 5, 2023
966 days ago
CVE Severity & Scoring
Sda845 Firmware233 CVEs
8%
59%
33%
All CVEs353,173 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local139 (59.7%)
Network92 (39.5%)
Unknown0 (0.0%)
Physical1 (0.4%)
Adjacent Network1 (0.4%)
Attack Complexity
Low226 (97.0%)
High7 (3.0%)
Unknown0 (0.0%)
User Interaction
None233 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low139 (59.7%)
High0 (0.0%)
None94 (40.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (233 CVEs).
233 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-33063HIGH Memory corruption in DSP Services during a remote call from HLOS to DSP. | Dec 5, 2023 | 7.8 | 64 | YES | NO |
CVE-2020-3657CRITICAL u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bou | Nov 2, 2020 | 9.8 | 45 | NO | NO |
CVE-2020-11168CRITICAL u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdrago | Nov 12, 2020 | 9.8 | 31 | NO | NO |
CVE-2019-14062CRITICAL Buffer overflows while decoding setup message from Network due to lack of check of IE message length received from network in Snapdragon Auto, Snapdragon Compute, Snapdragon Consum | Jun 22, 2020 | 9.8 | 31 | NO | NO |
CVE-2019-14005CRITICAL Buffer overflow occur while playing the clip which is nonstandard due to lack of check of size duration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon | Jan 21, 2020 | 9.8 | 31 | NO | NO |
CVE-2019-10532CRITICAL Null-pointer dereference issue can occur while calculating string length when source string length is zero in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Sna | Jan 21, 2020 | 9.8 | 31 | NO | NO |
CVE-2019-10500CRITICAL While processing MT Secondary PDP request, Buffer overflow will happen due to incorrect calculation of buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, | Dec 18, 2019 | 9.8 | 31 | NO | NO |
CVE-2020-3698CRITICAL Out of bound write while QoS DSCP mapping due to improper input validation for data received from association response frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Cons | Jul 30, 2020 | 9.8 | 30 | NO | NO |
CVE-2019-14080CRITICAL Out of bound write can happen due to lack of check of array index value while parsing SDP attribute for SAR in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdra | Jun 22, 2020 | 9.8 | 30 | NO | NO |
CVE-2019-14113CRITICAL Buffer overflow can occur in In WLAN firmware while unwraping data using CCMP cipher suite during parsing of EAPOL handshake frame in Snapdragon Auto, Snapdragon Compute, Snapdrago | Apr 16, 2020 | 9.8 | 30 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (233 CVEs).
CISA KEV
1 CVE
0.4% of CVEs· 97th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (233 CVEs).
Media Mentions
Signals from CVEs in this product scope (233 CVEs).
Top CNAs Publishing CVEs For Sda845 Firmware
Top CWEs
Versions
No cataloged versions.