Search
Search Results (410 CVEs found)
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2022-22088 | 1 Qualcomm | 300 Apq8009, Apq8009 Firmware, Apq8009w and 297 more | 2025-04-09 | 9.8 Critical |
Memory corruption in Bluetooth HOST due to buffer overflow while parsing the command response received from remote | ||||
CVE-2022-22079 | 1 Qualcomm | 92 Apq8009, Apq8009 Firmware, Apq8009w and 89 more | 2025-04-09 | 4.6 Medium |
Denial of service while processing fastboot flash command on mmc due to buffer over read | ||||
CVE-2022-33255 | 1 Qualcomm | 184 Apq8009, Apq8009 Firmware, Ar8031 and 181 more | 2025-04-09 | 8.2 High |
Information disclosure due to buffer over-read in Bluetooth HOST while processing GetFolderItems and GetItemAttribute Cmds from peer device. | ||||
CVE-2022-25694 | 1 Qualcomm | 416 Apq8009, Apq8009 Firmware, Apq8009w and 413 more | 2025-03-05 | 8.4 High |
Memory corruption in Modem due to usage of Out-of-range pointer offset in UIM | ||||
CVE-2023-28538 | 1 Qualcomm | 260 Aqt1000, Aqt1000 Firmware, Csra6620 and 257 more | 2025-02-27 | 8.4 High |
Memory corruption in WIN Product while invoking WinAcpi update driver in the UEFI region. | ||||
CVE-2023-28544 | 1 Qualcomm | 412 Aqt1000, Aqt1000 Firmware, Ar9380 and 409 more | 2025-02-27 | 7.8 High |
Memory corruption in WLAN while sending transmit command from HLOS to UTF handlers. | ||||
CVE-2023-28548 | 1 Qualcomm | 366 Aqt1000, Aqt1000 Firmware, Ar8035 and 363 more | 2025-02-27 | 7.8 High |
Memory corruption in WLAN HAL while processing Tx/Rx commands from QDART. | ||||
CVE-2023-28549 | 1 Qualcomm | 450 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 447 more | 2025-02-27 | 7.8 High |
Memory corruption in WLAN HAL while parsing Rx buffer in processing TLV payload. | ||||
CVE-2023-28559 | 1 Qualcomm | 426 Aqt1000, Aqt1000 Firmware, Ar8031 and 423 more | 2025-02-27 | 7.8 High |
Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload. | ||||
CVE-2024-43052 | 1 Qualcomm | 185 205 Mobile Platform, 205 Mobile Platform Firmware, 215 Mobile Platform and 182 more | 2024-12-12 | 7.8 High |
Memory corruption while processing API calls to NPU with invalid input. | ||||
CVE-2024-43050 | 1 Qualcomm | 109 Aqt1000, Aqt1000 Firmware, Fastconnect 6200 and 106 more | 2024-12-12 | 7.8 High |
Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver. | ||||
CVE-2024-33063 | 1 Qualcomm | 250 Ar8035, Ar8035 Firmware, Fastconnect 6900 and 247 more | 2024-12-12 | 7.5 High |
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside which this element is present. | ||||
CVE-2024-33056 | 1 Qualcomm | 662 205 Mobile Platform, 205 Mobile Platform Firmware, 315 5g Iot Modem and 659 more | 2024-12-12 | 8.4 High |
Memory corruption when allocating and accessing an entry in an SMEM partition continuously. | ||||
CVE-2024-33053 | 1 Qualcomm | 114 C-v2x 9150, C-v2x 9150 Firmware, Fastconnect 6200 and 111 more | 2024-12-12 | 6.7 Medium |
Memory corruption when multiple threads try to unregister the CVP buffer at the same time. | ||||
CVE-2024-33044 | 1 Qualcomm | 425 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 422 more | 2024-12-12 | 8.4 High |
Memory corruption while Configuring the SMR/S2CR register in Bypass mode. | ||||
CVE-2024-33037 | 1 Qualcomm | 104 C-v2x 9150, C-v2x 9150 Firmware, Fastconnect 6800 and 101 more | 2024-12-11 | 6.1 Medium |
Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware. | ||||
CVE-2024-33036 | 1 Qualcomm | 106 C-v2x 9150, C-v2x 9150 Firmware, Fastconnect 6800 and 103 more | 2024-12-11 | 6.7 Medium |
Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access. | ||||
CVE-2024-33012 | 1 Qualcomm | 501 Ar8035, Ar8035 Firmware, Ar9380 and 498 more | 2024-11-26 | 7.5 High |
Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon. | ||||
CVE-2024-33013 | 1 Qualcomm | 342 Ar8035, Ar8035 Firmware, Csr8811 and 339 more | 2024-11-26 | 7.5 High |
Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length. | ||||
CVE-2024-33011 | 1 Qualcomm | 501 Ar8035, Ar8035 Firmware, Ar9380 and 498 more | 2024-11-26 | 7.5 High |
Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero. |