Snapdragon 855+860 Mobile Platform Firmware
snapdragon_855+860_mobile_platform_firmware
Vendor: Qualcomm • 57 CVEs
CVEs (57)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 227315 5g Iot Modem Firmware 9206 Lte Modem FirmwareApq8017 Firmware+224 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio when memory map command is executed consecutively in ADSP. |
1Qualcomm 111315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+108 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time. |
1Qualcomm 118Snapdragon 425 Mobile Platform Firmware Snapdragon 427 Mobile Platform FirmwareSnapdragon 429 Mobile Platform Firmware+115 moreNov 21, 2024 Jan 2, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and...Show more |
1Qualcomm 304315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+301 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host. |
1Qualcomm 284315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+281 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in WLAN Firmware while parsing a BTM request. |
1Qualcomm 139315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+136 moreNov 21, 2024 Jan 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in Data Modem during DTLS handshake. |
1Qualcomm 139315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+136 moreNov 21, 2024 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while receiving a message in Bus Socket Transport Server. |
1Qualcomm 102Aqt1000 Firmware Ar8035 FirmwareFastconnect 6200 Firmware+99 moreNov 21, 2024 Jan 2, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Permanent DOS in Hypervisor while untrusted VM without PSCI support makes a PSCI call. |
1Qualcomm 259315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+256 moreNov 21, 2024 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio during playback with speaker protection. |
1Qualcomm 1179205 Lte Modem Firmware Aqt1000 FirmwareAr8031 Firmware+114 moreNov 21, 2024 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in TZ Secure OS while requesting a memory allocation from TA region. |
1Qualcomm 293315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+290 moreNov 21, 2024 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in HLOS while running playready use-case. |
1Qualcomm 30Aqt1000 Firmware Fastconnect 6200 FirmwareQca6420 Firmware+27 moreNov 21, 2024 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 address. |
1Qualcomm 236315 5g Iot Modem Firmware Apq8017 FirmwareApq8064au Firmware+233 moreOct 28, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call. |
1Qualcomm 90Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+87 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expected size. |
1Qualcomm 300315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+297 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when processing cmd parameters while parsing vdev. |
1Qualcomm 208Apq8017 Firmware Apq8064au FirmwareAqt1000 Firmware+205 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in Bluetooth Host while rfc slot allocation. |
1Qualcomm 184315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+181 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level. |
1Qualcomm 307315 5g Iot Modem Firmware 9205 Lte Modem FirmwareAqt1000 Firmware+304 moreAug 11, 2025 Dec 5, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE. |
1Qualcomm 275315 5g Iot Modem Firmware 9205 Lte Modem FirmwareAqt1000 Firmware+272 moreAug 11, 2025 Dec 5, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Memory corruption while loading an ELF segment in TEE Kernel. |
1Qualcomm 242315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+239 moreAug 11, 2025 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments. |