CVEs (598)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 146Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+143 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node. |
1Qualcomm 229315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+226 moreNov 8, 2024 Nov 4, 2024 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions. |
1Qualcomm 98Ar8035 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+95 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS while processing the CU information from RNR IE. |
1Qualcomm 77Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+74 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS while parsing BTM ML IE when per STA profile is not included. |
1Qualcomm 121Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+118 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS while parsing fragments of MBSSID IE from beacon frame. |
1Qualcomm 22Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+19 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while parsing IPC frequency table parameters for LPLH that has size greater than expected size. |
1Qualcomm 3Qca6584au Firmware Qca6698aq FirmwareSnapdragon Auto 5g Modem Rf Gen 2 FirmwareNov 7, 2024 Nov 4, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while handling the PDR in driver for getting the remote heap maps. |
1Qualcomm 91205 Mobile Platform Firmware Apq8017 FirmwareApq8037 Firmware+88 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE. |
1Qualcomm 62Fastconnect 6700 Firmware Fastconnect 6800 FirmwareFastconnect 6900 Firmware+59 moreOct 28, 2025 Oct 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while maintaining memory maps of HLOS memory. |
1Qualcomm 115Ar8035 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+112 moreAug 11, 2025 Oct 7, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing probe response and assoc response frame. |
1Qualcomm 158Ar8035 Firmware Csr8811 FirmwareFastconnect 6700 Firmware+155 moreAug 11, 2025 Oct 7, 2024 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. |
1Qualcomm 44Fastconnect 6800 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+41 moreOct 16, 2024 Oct 7, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS when transmission of management frame sent by host is not successful and error status is received in the host. |
1Qualcomm 131Csr8811 Firmware Fastconnect 6700 FirmwareFastconnect 7800 Firmware+128 moreAug 11, 2025 Oct 7, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame. |
1Qualcomm 34Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQam8255p Firmware+31 moreOct 16, 2024 Oct 7, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario. |
1Qualcomm 18Qam8255p Firmware Qam8650p FirmwareQam8775p Firmware+15 moreOct 16, 2024 Oct 7, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while invoking IOCTL calls for MSM module from the user space during audio playback and record. |
1Qualcomm 26Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQca6174a Firmware+23 moreOct 16, 2024 Oct 7, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption is possible when an attempt is made from userspace or console to write some haptics effects pattern to the haptics debugfs file. |
1Qualcomm 11Qca6584au Firmware Qca6698aq FirmwareQca9367 Firmware+8 moreOct 16, 2024 Oct 7, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption when a process invokes IOCTL calls from user-space to create a HAB virtual channel and another process invokes IOCTL calls to destroy the same. |
1Qualcomm 118Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+115 moreAug 11, 2025 Oct 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers. |
1Qualcomm 20Qam8295p Firmware Qca6584au FirmwareQca6595 Firmware+17 moreAug 11, 2025 Oct 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a driver. |
1Qualcomm 163Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+160 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing IOCTL call for getting group info. |