CVEs (22)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 2005g Fixed Wireless Access Platform Firmware 9206 Lte Modem Firmware9207 Lte Modem Firmware+197 moreMar 4, 2026 Mar 2, 2026 N/A· v4 7.2 HIGH· v3 N/A· v2 Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE. |
1Qualcomm 185315 5g Iot Modem Firmware 9206 Lte Modem FirmwareApq8017 Firmware+182 moreAug 11, 2025 Jul 8, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while processing received beacon frame. |
1Qualcomm 180315 5g Iot Firmware Apq8017 FirmwareApq8064au Firmware+177 moreFeb 10, 2026 Jul 8, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS may occur while processing malformed length field in SSID IEs. |
1Qualcomm 173205 Mobile Firmware 215 Mobile FirmwareApq8064au Firmware+170 moreFeb 11, 2026 Jul 8, 2025 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network. |
1Qualcomm 78C V2x 9150 Firmware Fastconnect 6800 FirmwareFastconnect 6900 Firmware+75 moreAug 11, 2025 May 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption during concurrent access to server info object due to unprotected critical field. |
1Qualcomm 44Msm8996au Firmware Qam8255p FirmwareQam8295p Firmware+41 moreMar 7, 2025 Mar 3, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing input message passed from FE driver. |
1Qualcomm 206205 Firmware Apq8017 FirmwareAr8035 Firmware+203 moreAug 11, 2025 Mar 3, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS may occur while processing the country IE. |
1Qualcomm 71Ar8035 Firmware C V2x 9150 FirmwareFastconnect 6800 Firmware+68 moreFeb 5, 2025 Feb 3, 2025 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure during audio playback. |
1Qualcomm 41Msm8996au Firmware Qam8255p FirmwareQam8295p Firmware+38 moreJan 13, 2025 Jan 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tamper...Show more |
1Qualcomm 76Ar8035 Firmware C V2x 9150 FirmwareCsrb31024 Firmware+73 moreAug 11, 2025 Jan 6, 2025 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver. |
1Qualcomm 243215 Mobile Firmware 315 5g Iot FirmwareAqt1000 Firmware+240 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when two threads try to map and unmap a single node simultaneously. |
1Qualcomm 197205 Mobile Firmware 215 Mobile FirmwareApq8017 Firmware+194 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when user provides data for FM HCI command control operations. |
1Qualcomm 282315 5g Iot Firmware 9206 Lte FirmwareApq8017 Firmware+279 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while processing TIM IE from beacon frame as there is no check for IE length. |
1Qualcomm 196205 Firmware 215 FirmwareApq8017 Firmware+193 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when Alternative Frequency offset value is set to 255. |
1Qualcomm 113215 Mobile Firmware Aqt1000 FirmwareFastconnect 6200 Firmware+110 moreAug 11, 2025 Jun 3, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Information disclosure in Video while parsing mp2 clip with invalid section length. |
1Qualcomm 234205 Mobile Firmware 215 Mobile Firmware315 5g Iot Modem Firmware+231 moreAug 11, 2025 Jun 3, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command. |
1Qualcomm 169205 Mobile Firmware 215 Mobile FirmwareAr8035 Firmware+166 moreAug 11, 2025 May 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when IOMMU unmap of a GPU buffer fails in Linux. |
1Qualcomm 90Ar8035 Firmware C V2x 9150 FirmwareCsrb31024 Firmware+87 moreAug 11, 2025 May 6, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size. |
1Qualcomm 225205 Mobile Firmware 215 Mobile Firmware315 5g Iot Modem Firmware+222 moreAug 11, 2025 Apr 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when there is failed unmap operation in GPU. |
1Qualcomm 281215 Mobile Firmware 315 5g Iot FirmwareApq8017 Firmware+278 moreAug 11, 2025 Apr 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing finish_sign command to pass a rsp buffer. |