CVEs (142)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 247Ar8035 Firmware Ar9380 FirmwareCsr8811 Firmware+244 moreNov 26, 2024 Aug 5, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero. |
1Qualcomm 246Ar8035 Firmware Ar9380 FirmwareCsr8811 Firmware+243 moreNov 26, 2024 Aug 5, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing fragments of MBSSID IE from beacon frame. |
1Qualcomm 102Fastconnect 6200 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+99 moreNov 26, 2024 Aug 5, 2024 N/A· v4 8.4 HIGH· v3 N/A· v2 Memory corruption when the mapped pages in VBO are still mapped after reclaiming by shrinker. |
1Qualcomm 102Fastconnect 6200 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+99 moreNov 26, 2024 Aug 5, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing graphics kernel driver request to create DMA fence. |
1Qualcomm 236215 Mobile Platform Firmware Apq8017 FirmwareApq8037 Firmware+233 moreNov 25, 2024 Aug 5, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus. |
1Qualcomm 141Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+138 moreNov 26, 2024 Aug 5, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when keymaster operation imports a shared key. |
1Qualcomm 104Fastconnect 6200 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+101 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while handling user packets during VBO bind operation. |
1Qualcomm 220205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+217 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released. |
1Qualcomm 109Fastconnect 6200 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+106 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while invoking IOCTL call for GPU memory allocation and size param is greater than expected size. |
1Qualcomm 341Apq8064au Firmware Aqt1000 FirmwareAr8035 Firmware+338 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when allocating and accessing an entry in an SMEM partition. |
1Qualcomm 2229205 Lte Modem Firmware Aqt1000 FirmwareAr8031 Firmware+219 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when an invoke call and a TEE call are bound for the same trusted application. |
1Qualcomm 2579205 Lte Modem Firmware Aqt1000 FirmwareAr8031 Firmware+254 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing key blob passed by the user. |
1Qualcomm 309315 5g Iot Modem Firmware 9205 Lte Modem FirmwareAqt1000 Firmware+306 moreNov 21, 2024 Jul 1, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Transient DOS while loading the TA ELF file. |
1Qualcomm 311215 Mobile Platform Firmware 315 5g Iot Modem Firmware9205 Lte Modem Firmware+308 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while performing finish HMAC operation when context is freed by keymaster. |
1Qualcomm 303315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+300 moreAug 11, 2025 Feb 6, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parse fils IE with length equal to 1. |
1Qualcomm 65Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+62 moreAug 11, 2025 Feb 6, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point. |
1Qualcomm 280Aqt1000 Firmware Ar8035 FirmwareAr9380 Firmware+277 moreAug 11, 2025 Feb 6, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL. |
1Qualcomm 69Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+66 moreAug 11, 2025 Feb 6, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE. |
1Qualcomm 261315 5g Iot Modem Firmware Apq8017 FirmwareAqt1000 Firmware+258 moreAug 11, 2025 Feb 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. |
1Qualcomm 239315 5g Iot Modem Firmware 9205 Lte Modem FirmwareAqt1000 Firmware+236 moreAug 11, 2025 Feb 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Core while processing control functions. |