|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 3, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252371 | 4.3 | 警告 | アップル ターボリナックス FreeType Project |
- | FreeType の bdf/bdflib.c におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-3053 | 2010-12-2 16:28 | 2010-08-19 | Show | GitHub Exploit DB Packet Storm |
| 252372 | 5 | 警告 | アップル | - | Apple Mac OS X の Printing におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2010-3784 | 2010-12-1 16:14 | 2010-11-16 | Show | GitHub Exploit DB Packet Storm |
| 252373 | 6.8 | 警告 | アップル | - | Apple Mac OS X のパスワードサーバにおけるパスワードの認証を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-3783 | 2010-12-1 16:12 | 2010-11-16 | Show | GitHub Exploit DB Packet Storm |
| 252374 | 6.8 | 警告 | アップル ターボリナックス FreeType Project オラクル |
- | FreeType における任意のコードを実行される脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-2807 | 2010-12-1 16:00 | 2010-08-19 | Show | GitHub Exploit DB Packet Storm |
| 252375 | 6.8 | 警告 | アップル サイバートラスト株式会社 ターボリナックス FreeType Project オラクル レッドハット |
- | FreeType の t42_parse_sfnts 関数における任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-2806 | 2010-12-1 15:58 | 2010-08-19 | Show | GitHub Exploit DB Packet Storm |
| 252376 | 6.8 | 警告 | アップル ターボリナックス FreeType Project レッドハット オラクル |
- | FreeType の FT_Stream_EnterFrame 関数における任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-2805 | 2010-12-1 15:55 | 2010-08-19 | Show | GitHub Exploit DB Packet Storm |
| 252377 | 5.1 | 警告 | アップル ターボリナックス FreeType Project オラクル |
- | FreeType の Ins_IUP 関数におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-2520 | 2010-12-1 15:28 | 2010-08-19 | Show | GitHub Exploit DB Packet Storm |
| 252378 | 6.8 | 警告 | アップル サイバートラスト株式会社 ターボリナックス FreeType Project オラクル レッドハット |
- | FreeType の Mac_Read_POST_Resource 関数におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-2519 | 2010-12-1 15:27 | 2010-07-12 | Show | GitHub Exploit DB Packet Storm |
| 252379 | 6.8 | 警告 | アップル サイバートラスト株式会社 ターボリナックス FreeType Project オラクル レッドハット |
- | FreeType の gray_render_span 関数における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-2500 | 2010-12-1 15:26 | 2010-07-12 | Show | GitHub Exploit DB Packet Storm |
| 252380 | 6.8 | 警告 | アップル サイバートラスト株式会社 ターボリナックス FreeType Project オラクル レッドハット |
- | FreeType の Mac_Read_POST_Resource 関数におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-2499 | 2010-12-1 15:24 | 2010-07-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 3, 2026, 4:06 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 249911 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_450_firmware sd_615_firmware s… |
Access control on applications is not applied while accessing SafeSwitch services can lead to improper access in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607,… |
NVD-CWE-noinfo
|
CVE-2017-18296 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 249912 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_450_firmware sd_615_firmware s… |
Possible buffer overflow if input is not null terminated in DSP Service module in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, … |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-18295 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 249913 | 7.8 |
HIGH
Local |
qualcomm |
fsm9055_firmware mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware … |
While reading file class type from ELF header, a buffer overread may happen if the ELF file size is less than the size of ELF64 header size in Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile… |
CWE-125
Out-of-bounds Read |
CVE-2017-18294 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 249914 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware sd_430_firmware sd_450_firmware sd_625_firmware sd_650… |
When a particular GPIO is protected by blocking access to the corresponding GPIO resource registers, the protection can be bypassed using the corresponding banked GPIO registers instead in Snapdragon… |
NVD-CWE-noinfo
|
CVE-2017-18293 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 249915 | 5.5 |
MEDIUM
Local |
qualcomm |
msm8909w_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_410_firmware sd_412_firmware sd_425_firmware sd_430_firmware sd_450_firmware sd_6… |
Secure app running in non secure space can restart TZ by calling Widevine app API repeatedly in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MSM8909W, MSM8996AU, SD 210/SD… |
CWE-20
Improper Input Validation |
CVE-2017-18292 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 249916 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware sd210_firmware sd212_firmware sd205_firmware sd425_firmware sd430_firmware sd450_firmware sd625_firmware sd650_firmwar… |
Non-secure SW can cause SDCC to generate secure bus accesses, which may expose RPM access in Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD … |
NVD-CWE-noinfo
|
CVE-2017-18282 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 249917 | 5.5 |
MEDIUM
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8909w_firmware qcn5502_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware sd… |
When dynamic memory allocation fails, currently the process sleeps for one second and continues with infinite loop without retrying for memory allocation in Snapdragon Automobile, Snapdragon Mobile, … |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2017-18277 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 249918 | 7.8 |
HIGH
Local |
qualcomm |
mdm9635m_firmware sd_400_firmware sd_410_firmware sd_412_firmware sd_425_firmware sd_427_firmware sd_430_firmware sd_435_firmware sd_450_firmware sd_615_firmware sd_616_… |
In a device, with screen size 1440x2560, the check of contiguous buffer will overflow on certain buffer size resulting in an Integer Overflow or Wraparound in System UI in Snapdragon Automobile, Snap… |
CWE-190
Integer Overflow or Wraparound |
CVE-2017-18172 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 249919 | 8.8 |
HIGH
Adjacent |
qualcomm |
qca9379_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_410_firmware sd_412_firmware sd_425_firmware sd_427_firmware sd_430_firmware sd_435_firmware sd_450_f… |
Improper input validation for GATT data packet received in Bluetooth Controller function can lead to possible memory corruption in Snapdragon Mobile in version QCA9379, SD 210/SD 212/SD 205, SD 410/1… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-18171 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 249920 | 8.8 |
HIGH
Adjacent |
qualcomm |
qca9379_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_410_firmware sd_412_firmware sd_425_firmware sd_427_firmware sd_430_firmware sd_435_firmware sd_450_f… |
Improper input validation in Bluetooth Controller function can lead to possible memory corruption in Snapdragon Mobile in version QCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD … |
CWE-191
Integer Underflow (Wrap or Wraparound) |
CVE-2017-18170 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |