📦 Pm4250 Firmware

by Qualcomm

🔍 What is Pm4250 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-11210

CRITICAL CVSS 9.3 Apr 7, 2021

This vulnerability allows memory corruption in the RPM region due to improper XPU configuration in Qualcomm Snapdragon chipsets. It affects devices using Snapdragon Connectivity, Industrial IOT, Mobil...

CVE-2020-11227

CRITICAL CVSS 9.8 Mar 17, 2021

This vulnerability allows attackers to write data beyond allocated memory boundaries while parsing RTT/TTY packets in Qualcomm Snapdragon chipsets. It affects numerous Snapdragon-powered devices acros...

CVE-2020-11188

CRITICAL CVSS 9.1 Mar 17, 2021

This vulnerability is a buffer over-read in Qualcomm Snapdragon chipsets when parsing SDP values without proper NULL termination checks. It allows attackers to read memory beyond allocated buffers, po...

CVE-2020-11190

CRITICAL CVSS 9.1 Mar 17, 2021

CVE-2020-11190 is a buffer over-read vulnerability in Qualcomm Snapdragon chipsets that allows attackers to read memory beyond allocated buffers when parsing SDP values. This can lead to information d...

CVE-2020-11222

CRITICAL CVSS 9.1 Mar 17, 2021

This vulnerability is a buffer over-read in Qualcomm Snapdragon chipsets when processing MT SMS messages with maximum length due to improper length checks. It allows attackers to read memory beyond al...

CVE-2020-11166

CRITICAL CVSS 9.1 Mar 17, 2021

This vulnerability allows an attacker to cause an out-of-bounds read exception by sending specially crafted ROHC headers with excessive padding to affected Qualcomm Snapdragon devices. Successful expl...

CVE-2020-11276

CRITICAL CVSS 9.1 Feb 22, 2021

This vulnerability is a buffer over-read in Qualcomm Snapdragon chipsets that occurs when processing Wi-Fi P2P (Peer-to-Peer) information elements and NOA (Notice of Absence) attributes in beacon and ...

CVE-2020-11163

CRITICAL CVSS 9.8 Feb 22, 2021

This vulnerability allows remote code execution via buffer overflow in Qualcomm Snapdragon chipsets when processing IKEv2 parameters from ePDG servers. Attackers can exploit this to execute arbitrary ...

CVE-2021-1891

HIGH CVSS 8.4 May 7, 2021

This vulnerability is a use-after-free flaw in Qualcomm audio drivers affecting multiple Snapdragon platforms. It allows attackers to potentially execute arbitrary code or cause denial of service by e...

CVE-2021-1905

HIGH CVSS 8.4 May 7, 2021

CVE-2021-1905 is a use-after-free vulnerability in Qualcomm Snapdragon chipsets that allows attackers to potentially execute arbitrary code or cause denial of service. The vulnerability affects multip...

CVE-2021-1910

HIGH CVSS 7.3 May 7, 2021

This vulnerability is a double-free memory corruption flaw in Qualcomm Snapdragon video processing components. It allows attackers to potentially execute arbitrary code or cause denial of service by e...

CVE-2020-11284

HIGH CVSS 8.4 May 7, 2021

This vulnerability allows non-secure boot loaders to unlock and modify memory regions that should remain locked, making them untrusted sources for secure boot loaders. This affects Qualcomm Snapdragon...

CVE-2020-11288

HIGH CVSS 7.8 May 7, 2021

CVE-2020-11288 is an out-of-bounds write vulnerability in Qualcomm's PlayReady DRM implementation affecting multiple Snapdragon platforms. This allows attackers to execute arbitrary code or cause deni...

CVE-2020-11251

HIGH CVSS 8.2 Apr 7, 2021

CVE-2020-11251 is an out-of-bounds read vulnerability in Qualcomm Snapdragon chipsets that allows attackers to read memory beyond allocated buffers when processing DTMF payloads. This affects numerous...

CVE-2020-11255

HIGH CVSS 7.5 Apr 7, 2021

This vulnerability is a memory leak in Qualcomm Snapdragon chipsets when processing RTCP packets with multiple SDES reports. It allows attackers to cause denial of service by exhausting system memory,...

CVE-2020-11309

HIGH CVSS 7.8 Mar 17, 2021

This CVE describes a use-after-free vulnerability in Qualcomm GPU drivers that allows attackers to execute arbitrary code or cause denial of service. The vulnerability affects multiple Qualcomm Snapdr...

CVE-2020-11218

HIGH CVSS 7.5 Mar 17, 2021

This CVE describes a denial-of-service vulnerability in Qualcomm baseband processors when LTE betaOffset-RI-Index configuration is processed without proper data validation. Attackers can cause service...

CVE-2020-11278

HIGH CVSS 7.5 Feb 22, 2021

This vulnerability in Qualcomm Snapdragon chipsets allows denial of service attacks through improper validation of host WMI commands. An attacker could crash affected devices by sending specially craf...

CVE-2020-11281

HIGH CVSS 7.5 Feb 22, 2021

This vulnerability in Qualcomm Snapdragon chipsets allows attackers to link RTT (Round Trip Time) frames by comparing sequence numbers when non-randomized MAC addresses are used, potentially exposing ...

CVE-2020-11177

HIGH CVSS 8.8 Feb 22, 2021

This vulnerability allows attackers to bypass security code protection on Qualcomm Snapdragon chipsets by overwriting Security Code NV items without knowing the current SPC (Service Programming Code)....

CVE-2020-11194

HIGH CVSS 7.8 Feb 22, 2021

This vulnerability allows attackers to perform out-of-bounds memory access in the Trusted Application (TA) component of Qualcomm Snapdragon chipsets due to improper buffer length validation. Successfu...