Snapdragon 685 4g Mobile Platform (sm6225 Ad) Firmware
snapdragon_685_4g_mobile_platform_(sm6225-ad)_firmware
Vendor: Qualcomm • 56 CVEs
CVEs (56)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 173Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+170 moreJan 27, 2026 Jan 7, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure when a weak hashed value is returned to userland code in response to a IOCTL call to obtain a session ID. |
1Qualcomm 202Aqt1000 Firmware Ar8035 FirmwareCsra6620 Firmware+199 moreJan 28, 2026 Jan 7, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing identity credential operations in the trusted application. |
1Qualcomm 82Csra6620 Firmware Csra6640 FirmwareFastconnect 6200 Firmware+79 moreJan 27, 2026 Jan 7, 2026 N/A· v4 6.4 MEDIUM· v3 N/A· v2 Memory corruption while handling sensor utility operations. |
1Qualcomm 144Csra6620 Firmware Csra6640 FirmwareFastconnect 6200 Firmware+141 moreJan 27, 2026 Jan 7, 2026 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while processing shared command buffer packet between camera userspace and kernel. |
1Qualcomm 237Aqt1000 Firmware Ar8031 FirmwareAr8035 Firmware+234 moreJan 28, 2026 Jan 7, 2026 N/A· v4 6.6 MEDIUM· v3 N/A· v2 Memory corruption while handling buffer mapping operations in the cryptographic driver. |
1Qualcomm 297Ar8031 Firmware Ar8035 FirmwareCsr8811 Firmware+294 moreJan 28, 2026 Jan 7, 2026 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Information disclosure while processing a firmware event. |
1Qualcomm 221Ar8031 Firmware Ar8035 FirmwareC V2x 9150 Firmware+218 moreJan 28, 2026 Jan 7, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Transient DOS while parsing video packets received from the video firmware. |
1Qualcomm 176Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+173 moreJan 28, 2026 Dec 18, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while routing GPR packets between user and root when handling large data packet. |
1Qualcomm 110Ar8031 Firmware Ar8035 FirmwareCsra6620 Firmware+107 moreJan 28, 2026 Dec 18, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while handling IOCTL calls to set mode. |
1Qualcomm 115Ar8031 Firmware Ar8035 FirmwareCsra6620 Firmware+112 moreJan 27, 2026 Dec 18, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while copying packets received from unix clients. |
1Qualcomm 2139206 Lte Modem Firmware Apq8017 FirmwareAqt1000 Firmware+210 moreFeb 10, 2026 Dec 18, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing MFC channel configuration during music playback. |
1Qualcomm 111Csra6620 Firmware Csra6640 FirmwareFastconnect 6200 Firmware+108 moreJan 28, 2026 Dec 18, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption during video playback when video session open fails with time out error. |
1Qualcomm 174Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+171 moreNov 5, 2025 Nov 4, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while performing encryption and decryption commands. |
1Qualcomm 297315 5g Iot Modem Firmware 9205 Lte Modem FirmwareAqt1000 Firmware+294 moreNov 5, 2025 Oct 9, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing a malformed license file during reboot. |
1Qualcomm 317215 Mobile Platform Firmware 315 5g Iot Modem Firmware9205 Lte Modem Firmware+314 moreNov 5, 2025 Oct 9, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption during PlayReady APP usecase while processing TA commands. |
1Qualcomm 63Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+60 moreNov 5, 2025 Oct 9, 2025 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Transient DOS while processing video packets received from video firmware. |
1Qualcomm 106Fastconnect 6200 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+103 moreNov 28, 2025 Sep 24, 2025 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set. |
1Qualcomm 225205 Mobile Platform Firmware 215 Mobile Platform FirmwareApq8017 Firmware+222 moreNov 28, 2025 Sep 24, 2025 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length. |
1Qualcomm 174Apq8064au Firmware Aqt1000 FirmwareFastconnect 6200 Firmware+171 moreFeb 10, 2026 Sep 24, 2025 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet. |
1Qualcomm 225Apq8017 Firmware Apq8064au FirmwareAqt1000 Firmware+222 moreNov 28, 2025 Sep 24, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs. |