← Back

Srv1h Firmware

srv1h_firmware

Vendor: Qualcomm • 269 CVEs

CVEs (269)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Qualcomm
157Aqt1000 Firmware
Ar8035 FirmwareFastconnect 6200 Firmware+154 more
Feb 5, 2025
Feb 3, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while configuring a Hypervisor based input virtual device.
1Qualcomm
23Qam8255p Firmware
Qam8295p FirmwareQam8620p Firmware+20 more
Jan 13, 2025
Jan 6, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.
1Qualcomm
182Ar8035 Firmware
Csr8811 FirmwareFastconnect 6700 Firmware+179 more
Aug 11, 2025
Jan 6, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
1Qualcomm
41Msm8996au Firmware
Qam8255p FirmwareQam8295p Firmware+38 more
Jan 13, 2025
Jan 6, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tamper...Show more
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.Show less
1Qualcomm
125Ar8035 Firmware
Fastconnect 6200 FirmwareFastconnect 6700 Firmware+122 more
Aug 11, 2025
Jan 6, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global list while another thread is using it for a process-specific task, issues may arise.
1Qualcomm
30Qam8255p Firmware
Qam8295p FirmwareQam8620p Firmware+27 more
Jan 13, 2025
Jan 6, 2025
N/A· v4
4.7 MEDIUM· v3
N/A· v2
Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers through SMMU.
1Qualcomm
17Qam8255p Firmware
Qam8295p FirmwareQam8650p Firmware+14 more
Jan 10, 2025
Jan 6, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
information disclosure while invoking the mailbox read API.
1Qualcomm
17Qam8255p Firmware
Qam8295p FirmwareQam8650p Firmware+14 more
Jan 10, 2025
Jan 6, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size.
1Qualcomm
123Ar8035 Firmware
Fastconnect 6900 FirmwareFastconnect 7800 Firmware+120 more
Dec 12, 2024
Dec 2, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside which this element is present.
1Qualcomm
323205 Mobile Platform Firmware
315 5g Iot Modem Firmware9205 Lte Modem Firmware+320 more
Dec 12, 2024
Dec 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
1Qualcomm
208315 5g Iot Modem Firmware
Aqt1000 FirmwareAr8035 Firmware+205 more
Dec 12, 2024
Dec 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
1Qualcomm
22Qam8255p Firmware
Qam8650p FirmwareQam8775p Firmware+19 more
Dec 11, 2024
Dec 2, 2024
N/A· v4
6.7 MEDIUM· v3
N/A· v2
Memory corruption when PAL client calls PAL service APIs by passing a random value as handle and the handle is not validated by the service.
1Qualcomm
117Ar8035 Firmware
Fastconnect 6200 FirmwareFastconnect 6700 Firmware+114 more
Nov 7, 2024
Nov 4, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption during GNSS HAL process initialization.
1Qualcomm
263205 Mobile Platform Firmware
215 Mobile Platform Firmware315 5g Iot Modem Firmware+260 more
Nov 7, 2024
Nov 4, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while processing voice packet with arbitrary data received from ADSP.
1Qualcomm
76Fastconnect 6200 Firmware
Fastconnect 7800 FirmwareQam8255p Firmware+73 more
Nov 7, 2024
Nov 4, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while processing GPU commands.
1Qualcomm
146Ar8035 Firmware
Csra6620 FirmwareCsra6640 Firmware+143 more
Nov 7, 2024
Nov 4, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.
1Qualcomm
229315 5g Iot Modem Firmware
Aqt1000 FirmwareAr8035 Firmware+226 more
Nov 8, 2024
Nov 4, 2024
N/A· v4
9.1 CRITICAL· v3
N/A· v2
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
1Qualcomm
98Ar8035 Firmware
Fastconnect 6700 FirmwareFastconnect 6900 Firmware+95 more
Nov 7, 2024
Nov 4, 2024
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Transient DOS while processing the CU information from RNR IE.
1Qualcomm
121Ar8035 Firmware
Fastconnect 6900 FirmwareFastconnect 7800 Firmware+118 more
Nov 7, 2024
Nov 4, 2024
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Transient DOS while parsing fragments of MBSSID IE from beacon frame.
1Qualcomm
40Fastconnect 6900 Firmware
Fastconnect 7800 FirmwareQam8255p Firmware+37 more
Oct 16, 2024
Oct 7, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while processing user packets to generate page faults.