Sdm845 Firmware
Vendor:
First CVE: Apr 18, 2018 · Active for 8 years
282
Total CVEs
More Total CVEs than 100% of tracked products
56.4
Avg CVEs / Year
Higher CVE frequency than 100% of tracked products
8.2
Avg CVSS
Higher Avg CVSS than 75% of tracked products
0.4%
KEV Rate
Higher KEV Rate than 97% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Sdm845 Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 18, 2018
8 years ago
Most Recent CVE
Dec 5, 2023
966 days ago
CVE Severity & Scoring
Sdm845 Firmware282 CVEs
59%
34%
All CVEs353,240 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local161 (57.1%)
Network119 (42.2%)
Unknown0 (0.0%)
Physical2 (0.7%)
Adjacent Network0 (0.0%)
Attack Complexity
Low275 (97.5%)
High7 (2.5%)
Unknown0 (0.0%)
User Interaction
None282 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low161 (57.1%)
High0 (0.0%)
None121 (42.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (282 CVEs).
282 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-33063HIGH Memory corruption in DSP Services during a remote call from HLOS to DSP. | Dec 5, 2023 | 7.8 | 64 | YES | NO |
CVE-2020-3657CRITICAL u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bou | Nov 2, 2020 | 9.8 | 45 | NO | NO |
CVE-2020-11168CRITICAL u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdrago | Nov 12, 2020 | 9.8 | 31 | NO | NO |
CVE-2019-14062CRITICAL Buffer overflows while decoding setup message from Network due to lack of check of IE message length received from network in Snapdragon Auto, Snapdragon Compute, Snapdragon Consum | Jun 22, 2020 | 9.8 | 31 | NO | NO |
CVE-2019-14005CRITICAL Buffer overflow occur while playing the clip which is nonstandard due to lack of check of size duration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon | Jan 21, 2020 | 9.8 | 31 | NO | NO |
CVE-2019-10532CRITICAL Null-pointer dereference issue can occur while calculating string length when source string length is zero in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Sna | Jan 21, 2020 | 9.8 | 31 | NO | NO |
CVE-2019-10500CRITICAL While processing MT Secondary PDP request, Buffer overflow will happen due to incorrect calculation of buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, | Dec 18, 2019 | 9.8 | 31 | NO | NO |
CVE-2020-3703CRITICAL u'Buffer over-read issue in Bluetooth peripheral firmware due to lack of check for invalid opcode and length of opcode received from central device(This CVE is equivalent to Link L | Nov 2, 2020 | 9.8 | 30 | NO | NO |
CVE-2020-3673CRITICAL u'Buffer overflow can happen as part of SIP message packet processing while storing values in array due to lack of check to validate the index length' in Snapdragon Auto, Snapdrago | Nov 2, 2020 | 9.8 | 30 | NO | NO |
CVE-2020-3698CRITICAL Out of bound write while QoS DSCP mapping due to improper input validation for data received from association response frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Cons | Jul 30, 2020 | 9.8 | 30 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (282 CVEs).
CISA KEV
1 CVE
0.4% of CVEs· 97th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (282 CVEs).
Media Mentions
Signals from CVEs in this product scope (282 CVEs).
Top CNAs Publishing CVEs For Sdm845 Firmware
Top CWEs
Versions
No cataloged versions.