Snapdragon 4 Gen 2 Mobile Platform Firmware
snapdragon_4_gen_2_mobile_platform_firmware
Vendor: Qualcomm • 144 CVEs
CVEs (144)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 122Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+119 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when resource manager sends the host kernel a reply message with multiple fragments. |
1Qualcomm 122Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+119 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element. |
1Qualcomm 304315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+301 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host. |
1Qualcomm 284315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+281 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in WLAN Firmware while parsing a BTM request. |
1Qualcomm 236315 5g Iot Modem Firmware Apq8017 FirmwareApq8064au Firmware+233 moreOct 28, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call. |
1Qualcomm 147Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+144 moreOct 28, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND. |
1Qualcomm 257315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+254 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing WPA IES, when it is passed with length more than expected size. |
1Qualcomm 90Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+87 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expected size. |
1Qualcomm 300315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+297 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when processing cmd parameters while parsing vdev. |
1Qualcomm 117Apq5053 Aa Firmware Ar8035 FirmwareCsra6620 Firmware+114 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Core while processing RX intent request. |
1Qualcomm 365315 5g Iot Modem Firmware 8098 Firmware8998 Firmware+362 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame. |
1Qualcomm 280315 5g Iot Modem Firmware 8098 Firmware8953pro Firmware+277 moreOct 27, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in DSP Services during a remote call from HLOS to DSP. |
1Qualcomm 167315 5g Iot Modem Firmware 8098 Firmware8998 Firmware+164 moreAug 11, 2025 Dec 5, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data. |
1Qualcomm 89315 5g Iot Modem Firmware Ar8035 FirmwareQca6390 Firmware+86 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in Data modem while handling TLB control messages from the Network. |
1Qualcomm 58Ar8035 Firmware Qca6391 FirmwareQca8081 Firmware+55 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in Modem when a Beam switch request is made with a non-configured BWP. |
1Qualcomm 262315 5g Iot Modem Firmware 8098 Firmware8998 Firmware+259 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while using the UIM diag command to get the operators name. |
1Qualcomm 276315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+273 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Boot while running a ListVars test in UEFI Menu during boot. |
1Qualcomm 208Apq8017 Firmware Apq8064au FirmwareAqt1000 Firmware+205 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in Bluetooth Host while rfc slot allocation. |
1Qualcomm 184315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+181 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level. |
1Qualcomm 307315 5g Iot Modem Firmware 9205 Lte Modem FirmwareAqt1000 Firmware+304 moreAug 11, 2025 Dec 5, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE. |