Snapdragon X75 5g Modem Rf System Firmware
snapdragon_x75_5g_modem-rf_system_firmware
Vendor: Qualcomm • 206 CVEs
CVEs (206)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 215Ar8031 Firmware Ar8035 FirmwareCologne Firmware+212 moreJun 2, 2026 Jun 1, 2026 N/A· v4 7.2 HIGH· v3 N/A· v2 Memory Corruption when processing fastboot commands to set display mode. |
1Qualcomm 2665g Fixed Wireless Access Platform Firmware Apq8098 FirmwareAr8031 Firmware+263 moreJun 2, 2026 Jun 1, 2026 N/A· v4 7.2 HIGH· v3 N/A· v2 Memory corruption while processing fastboot commands with improperly formatted input. |
1Qualcomm 214Ar8031 Firmware Ar8035 FirmwareCologne Firmware+211 moreJun 2, 2026 Jun 1, 2026 N/A· v4 7.1 HIGH· v3 N/A· v2 Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow. |
1Qualcomm 216Ar8031 Firmware Ar8035 FirmwareCologne Firmware+213 moreJun 2, 2026 Jun 1, 2026 N/A· v4 7.2 HIGH· v3 N/A· v2 Memory corruption while processing fastboot commands with invalid input. |
1Qualcomm 212Ar8031 Firmware Ar8035 FirmwareCologne Firmware+209 moreJun 2, 2026 Jun 1, 2026 N/A· v4 7.2 HIGH· v3 N/A· v2 Memory corruption while processing fastboot OEM commands. |
1Qualcomm 2665g Fixed Wireless Access Platform Firmware Apq8098 FirmwareAr8031 Firmware+263 moreJun 2, 2026 Jun 1, 2026 N/A· v4 7.2 HIGH· v3 N/A· v2 Memory Corruption when processing display command line information due to improper initialization of a variable. |
1Qualcomm 1865g Fixed Wireless Access Platform Firmware Ar8035 FirmwareCsr8811 Firmware+183 moreJun 2, 2026 Jun 1, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information Disclosure when processing advertisement frames with malformed MBSSID elements of insufficient length. |
1Qualcomm 258Ar8035 Firmware Cologne FirmwareCq7790 Firmware+255 moreJun 2, 2026 Jun 1, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption when running a memory copy operation due to invalid writes caused by a null pointer. |
1Qualcomm 102Ar8035 Firmware Cologne FirmwareFastconnect 6200 Firmware+99 moreApr 8, 2026 Apr 6, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS when receiving a service data frame with excessive length during device matching over a neighborhood awareness network protocol connection. |
1Qualcomm 149Ar8035 Firmware Cologne FirmwareCsr8811 Firmware+146 moreApr 8, 2026 Apr 6, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes during initial scans. |
1Qualcomm 1485g Fixed Wireless Access Platform Firmware Ar8035 FirmwareCsra6620 Firmware+145 moreApr 8, 2026 Apr 6, 2026 N/A· v4 8.8 HIGH· v3 N/A· v2 Memory corruption when decoding corrupted satellite data files with invalid signature offsets. |
1Qualcomm 176Ar8035 Firmware Cologne FirmwareCsra6620 Firmware+173 moreApr 8, 2026 Apr 6, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation. |
1Qualcomm 165Ar8031 Firmware Ar8035 FirmwareCsra6620 Firmware+162 moreMar 5, 2026 Mar 2, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption while invoking IOCTL calls when concurrent access to shared buffer occurs. |
1Qualcomm 2005g Fixed Wireless Access Platform Firmware 9206 Lte Modem Firmware9207 Lte Modem Firmware+197 moreMar 4, 2026 Mar 2, 2026 N/A· v4 7.2 HIGH· v3 N/A· v2 Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE. |
1Qualcomm 1735g Fixed Wireless Access Platform Firmware Ar8031 FirmwareAr8035 Firmware+170 moreMar 5, 2026 Mar 2, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption when concurrent access to shared buffer occurs due to improper synchronization between assignment and deallocation of buffer resources. |
1Qualcomm 120Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6900 Firmware+117 moreMar 4, 2026 Mar 2, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption when accessing a buffer after it has been freed while processing IOCTL calls. |
1Qualcomm 165Ar8031 Firmware Ar8035 FirmwareCsra6620 Firmware+162 moreMar 4, 2026 Mar 2, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption when concurrent access to shared buffer occurs during IOCTL calls. |
1Qualcomm 164Ar8031 Firmware Ar8035 FirmwareCsra6620 Firmware+161 moreMar 4, 2026 Mar 2, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while handling different IOCTL calls from the user-space simultaneously. |
1Qualcomm 184Ar8035 Firmware Cologne FirmwareFastconnect 6200 Firmware+181 moreMar 4, 2026 Mar 2, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption when accessing buffers with invalid length during TA invocation. |
1Qualcomm 1225g Fixed Wireless Access Platform Firmware Ar8035 FirmwareCsra6620 Firmware+119 moreMar 4, 2026 Mar 2, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS when an LTE RLC packet with invalid TB is received by UE. |