← Back

Msm8996au Firmware

msm8996au_firmware

Vendor: Qualcomm • 707 CVEs

CVEs (707)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Qualcomm
65C V2x 9150 Firmware
Fastconnect 6200 FirmwareFastconnect 6800 Firmware+62 more
Oct 6, 2025
Apr 7, 2025
N/A· v4
6.6 MEDIUM· v3
N/A· v2
Memory corruption while accessing MSM channel map and mixer functions.
1Qualcomm
44Msm8996au Firmware
Qam8255p FirmwareQam8295p Firmware+41 more
Mar 7, 2025
Mar 3, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while processing input message passed from FE driver.
1Qualcomm
206205 Firmware
Apq8017 FirmwareAr8035 Firmware+203 more
Aug 11, 2025
Mar 3, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS may occur while processing the country IE.
1Qualcomm
163205 Firmware
215 Firmware315 5g Iot Firmware+160 more
Aug 11, 2025
Mar 3, 2025
N/A· v4
5.3 MEDIUM· v3
N/A· v2
While processing the authentication message in UE, improper authentication may lead to information disclosure.
1Qualcomm
71Ar8035 Firmware
C V2x 9150 FirmwareFastconnect 6800 Firmware+68 more
Feb 5, 2025
Feb 3, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Information disclosure during audio playback.
1Qualcomm
41Msm8996au Firmware
Qam8255p FirmwareQam8295p Firmware+38 more
Jan 13, 2025
Jan 6, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tamper...Show more
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.Show less
1Qualcomm
76Ar8035 Firmware
C V2x 9150 FirmwareCsrb31024 Firmware+73 more
Aug 11, 2025
Jan 6, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
1Qualcomm
27Msm8909w Firmware
Msm8996au FirmwareSd 205 Firmware+24 more
Jan 9, 2025
Nov 26, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder.
1Qualcomm
203205 Mobile Platform Firmware
215 Mobile Platform Firmware315 5g Iot Modem Firmware+200 more
Nov 7, 2024
Nov 4, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while processing GPU page table switch.
1Qualcomm
263205 Mobile Platform Firmware
215 Mobile Platform Firmware315 5g Iot Modem Firmware+260 more
Nov 7, 2024
Nov 4, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while processing voice packet with arbitrary data received from ADSP.
1Qualcomm
243215 Mobile Firmware
315 5g Iot FirmwareAqt1000 Firmware+240 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption when two threads try to map and unmap a single node simultaneously.
1Qualcomm
197205 Mobile Firmware
215 Mobile FirmwareApq8017 Firmware+194 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption when user provides data for FM HCI command control operations.
1Qualcomm
282315 5g Iot Firmware
9206 Lte FirmwareApq8017 Firmware+279 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
1Qualcomm
197205 Mobile Platform Firmware
215 Mobile Platform FirmwareApq8017 Firmware+194 more
Dec 20, 2024
Sep 2, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Transient DOS while handling PS event when Program Service name length offset value is set to 255.
1Qualcomm
196205 Firmware
215 FirmwareApq8017 Firmware+193 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption when Alternative Frequency offset value is set to 255.
1Qualcomm
319315 5g Iot Modem Firmware
860 Mobile Platform FirmwareApq8064au Firmware+316 more
Nov 20, 2024
Aug 5, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS while parsing ESP IE from beacon/probe response frame.
1Qualcomm
247205 Mobile Platform Firmware
215 Mobile Platform Firmware315 5g Iot Modem Firmware+244 more
Nov 26, 2024
Aug 5, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
1Qualcomm
220205 Mobile Platform Firmware
215 Mobile Platform Firmware315 5g Iot Modem Firmware+217 more
Nov 21, 2024
Jul 1, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
1Qualcomm
341Apq8064au Firmware
Aqt1000 FirmwareAr8035 Firmware+338 more
Nov 21, 2024
Jul 1, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption when allocating and accessing an entry in an SMEM partition.
1Qualcomm
311215 Mobile Platform Firmware
315 5g Iot Modem Firmware9205 Lte Modem Firmware+308 more
Nov 21, 2024
Jul 1, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while performing finish HMAC operation when context is freed by keymaster.