CVEs (461)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 32Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+29 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption during the handshake between the Primary Virtual Machine and Trusted Virtual Machine. |
1Qualcomm 197205 Mobile Firmware 215 Mobile FirmwareApq8017 Firmware+194 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when user provides data for FM HCI command control operations. |
1Qualcomm 187Ar8035 Firmware Csr8811 FirmwareFastconnect 6700 Firmware+184 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame. |
1Qualcomm 24Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+21 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when the captureRead QDCM command is invoked from user-space. |
1Qualcomm 197205 Mobile Platform Firmware 215 Mobile Platform FirmwareApq8017 Firmware+194 moreDec 20, 2024 Sep 2, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Transient DOS while handling PS event when Program Service name length offset value is set to 255. |
1Qualcomm 196205 Firmware 215 FirmwareApq8017 Firmware+193 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when Alternative Frequency offset value is set to 255. |
1Qualcomm 331315 5g Iot Modem Firmware 9205 Lte Modem FirmwareAqt1000 Firmware+328 moreOct 3, 2025 Sep 2, 2024 N/A· v4 6.8 MEDIUM· v3 N/A· v2 memory corruption when an invalid firehose patch command is invoked. |
1Qualcomm 47Fastconnect 7800 Firmware Qam8255p FirmwareQam8650p Firmware+44 moreOct 3, 2025 Sep 2, 2024 N/A· v4 8.4 HIGH· v3 N/A· v2 Memory corruption while releasing shared resources in MinkSocket listener thread. |
1Qualcomm 177Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+174 moreOct 3, 2025 Sep 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS when processing the non-transmitted BSSID profile sub-elements present within the MBSSID Information Element (IE) of a beacon frame that is received from over-the-air (OTA). |
1Qualcomm 159205 Mobile Platform Firmware 315 5g Iot Modem Firmware9205 Lte Modem Firmware+156 moreOct 3, 2025 Sep 2, 2024 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network. |
1Qualcomm 53205 Mobile Platform Firmware Apq8017 FirmwareApq8037 Firmware+50 moreOct 3, 2025 Sep 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in Modem. |
1Qualcomm 90205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+87 moreNov 20, 2024 Aug 5, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table. |
1Qualcomm 236215 Mobile Platform Firmware Apq8017 FirmwareApq8037 Firmware+233 moreNov 25, 2024 Aug 5, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus. |
1Qualcomm 247205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+244 moreNov 26, 2024 Aug 5, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI. |
1Qualcomm 341Apq8064au Firmware Aqt1000 FirmwareAr8035 Firmware+338 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when allocating and accessing an entry in an SMEM partition. |
1Qualcomm 311215 Mobile Platform Firmware 315 5g Iot Modem Firmware9205 Lte Modem Firmware+308 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while performing finish HMAC operation when context is freed by keymaster. |
1Qualcomm 234205 Mobile Firmware 215 Mobile Firmware315 5g Iot Modem Firmware+231 moreAug 11, 2025 Jun 3, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command. |
1Qualcomm 90Ar8035 Firmware C V2x 9150 FirmwareCsrb31024 Firmware+87 moreAug 11, 2025 May 6, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size. |
1Qualcomm 53Fastconnect 6800 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+50 moreAug 11, 2025 May 6, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure while parsing dts header atom in Video. |
1Qualcomm 225205 Mobile Firmware 215 Mobile Firmware315 5g Iot Modem Firmware+222 moreAug 11, 2025 Apr 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when there is failed unmap operation in GPU. |