Sdm830 Firmware

Vendor:

First CVE: Nov 12, 2020 · Active for 5 years

83
Total CVEs
More Total CVEs than 99% of tracked products
27.7
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
7.7
Avg CVSS
Higher Avg CVSS than 65% of tracked products
3.6%
KEV Rate
Higher KEV Rate than 98% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Sdm830 Firmware over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 12, 2020
5 years ago
Most Recent CVE
Jun 14, 2022
1,505 days ago

CVE Severity & Scoring

Sdm830 Firmware83 CVEs
All CVEs353,240 CVEs
MediumHighCritical
Attack Vector
Local51 (61.4%)
Network29 (34.9%)
Unknown0 (0.0%)
Physical2 (2.4%)
Adjacent Network1 (1.2%)
Attack Complexity
Low77 (92.8%)
High6 (7.2%)
Unknown0 (0.0%)
User Interaction
None82 (98.8%)
Unknown0 (0.0%)
Required1 (1.2%)
Privileges Required
Low43 (51.8%)
High5 (6.0%)
None35 (42.2%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (83 CVEs).

83 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon
May 7, 20217.867YESNO
Improper handling of address deregistration on failure can lead to new GPU address allocation failure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon C
May 7, 20215.556YESNO
Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectiv
Jun 9, 20217.855YESNO
u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdrago
Nov 12, 20209.831NONO
A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer
Sep 17, 20219.830NONO
Possible buffer overflow due to improper validation of device types during P2P search in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap
Sep 8, 20219.830NONO
Double free in video due to lack of input buffer length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, S
May 7, 20219.830NONO
Possible information exposure and denial of service due to NAS not dropping messages when integrity check fails in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Sna
Nov 12, 20219.129NONO
Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect
Sep 8, 20217.529NONO
Buffer overflow in modem due to improper array index check before copying into it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdrag
Jul 13, 20219.829NONO

Exploit Exposure

Signals from CVEs in this product scope (83 CVEs).

CISA KEV
3 CVEs
3.6% of CVEs· 98th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (83 CVEs).

Media Mentions

Signals from CVEs in this product scope (83 CVEs).

Top CNAs Publishing CVEs For Sdm830 Firmware

Top CWEs

Versions

No cataloged versions.