CVEs (622)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 157Aqt1000 Firmware Ar8035 FirmwareFastconnect 6200 Firmware+154 moreFeb 5, 2025 Feb 3, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while configuring a Hypervisor based input virtual device. |
1Qualcomm 28Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQam8295p Firmware+25 moreFeb 5, 2025 Feb 3, 2025 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure while processing information on firmware image during core initialization. |
1Qualcomm 125Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+122 moreAug 11, 2025 Jan 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global list while another thread is using it for a process-specific task, issues may arise. |
1Qualcomm 89205 Mobile Platform Firmware 215 Mobile Platform FirmwareApq8017 Firmware+86 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing API calls to NPU with invalid input. |
1Qualcomm 54Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+51 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver. |
1Qualcomm 323205 Mobile Platform Firmware 315 5g Iot Modem Firmware9205 Lte Modem Firmware+320 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when allocating and accessing an entry in an SMEM partition continuously. |
1Qualcomm 208315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+205 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while Configuring the SMR/S2CR register in Bypass mode. |
1Qualcomm 50C V2x 9150 Firmware Fastconnect 6800 FirmwareFastconnect 6900 Firmware+47 moreDec 11, 2024 Dec 2, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware. |
1Qualcomm 117Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+114 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption during GNSS HAL process initialization. |
1Qualcomm 203205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+200 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing GPU page table switch. |
1Qualcomm 263205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+260 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing voice packet with arbitrary data received from ADSP. |
1Qualcomm 146Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+143 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node. |
1Qualcomm 172215 Mobile Platform Firmware Ar8035 FirmwareCsra6620 Firmware+169 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while handling session errors from firmware. |
1Qualcomm 229315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+226 moreNov 8, 2024 Nov 4, 2024 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions. |
1Qualcomm 91205 Mobile Platform Firmware Apq8017 FirmwareApq8037 Firmware+88 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE. |
1Qualcomm 62Fastconnect 6700 Firmware Fastconnect 6800 FirmwareFastconnect 6900 Firmware+59 moreOct 28, 2025 Oct 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while maintaining memory maps of HLOS memory. |
1Qualcomm 21Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQca6174a Firmware+18 moreOct 16, 2024 Oct 7, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IOCTL call. |
1Qualcomm 26Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQca6174a Firmware+23 moreOct 16, 2024 Oct 7, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption is possible when an attempt is made from userspace or console to write some haptics effects pattern to the haptics debugfs file. |
1Qualcomm 118Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+115 moreAug 11, 2025 Oct 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers. |
1Qualcomm 163Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+160 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing IOCTL call for getting group info. |