CVEs (81)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 259205 Mobile Firmware 215 Mobile Firmware315 5g Iot Modem Firmware+256 moreAug 11, 2025 May 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures occur. |
1Qualcomm 699206 Lte Modem Firmware Apq8017 FirmwareAr8031 Firmware+66 moreOct 6, 2025 Apr 7, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session. |
1Qualcomm 323205 Mobile Platform Firmware 315 5g Iot Modem Firmware9205 Lte Modem Firmware+320 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when allocating and accessing an entry in an SMEM partition continuously. |
1Qualcomm 203205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+200 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing GPU page table switch. |
1Qualcomm 263205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+260 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing voice packet with arbitrary data received from ADSP. |
1Qualcomm 172215 Mobile Platform Firmware Ar8035 FirmwareCsra6620 Firmware+169 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while handling session errors from firmware. |
1Qualcomm 151Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+148 moreNov 20, 2024 Aug 5, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timeline events. |
1Qualcomm 247205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+244 moreNov 26, 2024 Aug 5, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI. |
1Qualcomm 220205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+217 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released. |
1Qualcomm 341Apq8064au Firmware Aqt1000 FirmwareAr8035 Firmware+338 moreNov 21, 2024 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when allocating and accessing an entry in an SMEM partition. |
1Qualcomm 234205 Mobile Firmware 215 Mobile Firmware315 5g Iot Modem Firmware+231 moreAug 11, 2025 Jun 3, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command. |
1Qualcomm 229215 Mobile Firmware 315 5g Iot Modem FirmwareAqt1000 Firmware+226 moreAug 11, 2025 May 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when the payload received from firmware is not as per the expected protocol size. |
1Qualcomm 169205 Mobile Firmware 215 Mobile FirmwareAr8035 Firmware+166 moreAug 11, 2025 May 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when IOMMU unmap of a GPU buffer fails in Linux. |
1Qualcomm 225205 Mobile Firmware 215 Mobile Firmware315 5g Iot Modem Firmware+222 moreAug 11, 2025 Apr 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when there is failed unmap operation in GPU. |
1Qualcomm 307205 Mobile Firmware 215 Mobile Firmware315 5g Iot Modem Firmware+304 moreAug 11, 2025 Mar 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio while processing RT proxy port register driver. |
1Qualcomm 333315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+330 moreAug 11, 2025 Mar 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Core Services while executing the command for removing a single event listener. |
1Qualcomm 261315 5g Iot Modem Firmware Apq8017 FirmwareAqt1000 Firmware+258 moreAug 11, 2025 Feb 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. |
1Qualcomm 350315 5g Iot Modem Firmware 9206 Lte Modem FirmwareApq8017 Firmware+347 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header. |
1Qualcomm 227315 5g Iot Modem Firmware 9206 Lte Modem FirmwareApq8017 Firmware+224 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio when memory map command is executed consecutively in ADSP. |
1Qualcomm 130Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+127 moreAug 11, 2025 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL. |