CVEs (807)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 263205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+260 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing voice packet with arbitrary data received from ADSP. |
1Qualcomm 146Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+143 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node. |
1Qualcomm 172215 Mobile Platform Firmware Ar8035 FirmwareCsra6620 Firmware+169 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while handling session errors from firmware. |
1Qualcomm 229315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+226 moreNov 8, 2024 Nov 4, 2024 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions. |
1Qualcomm 44Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+41 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver. |
1Qualcomm 44Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+41 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 Memory corruption while handling IOCTL calls in JPEG Encoder driver. |
1Qualcomm 121Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+118 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS while parsing fragments of MBSSID IE from beacon frame. |
1Qualcomm 67C V2x 9150 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+64 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it. |
1Qualcomm 62Fastconnect 6700 Firmware Fastconnect 6800 FirmwareFastconnect 6900 Firmware+59 moreOct 28, 2025 Oct 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while maintaining memory maps of HLOS memory. |
1Qualcomm 47Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+44 moreMar 23, 2026 Oct 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while taking snapshot when an offset variable is set by camera driver. |
1Qualcomm 34Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQam8255p Firmware+31 moreOct 16, 2024 Oct 7, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario. |
1Qualcomm 163Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+160 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing IOCTL call for getting group info. |
1Qualcomm 40Ar8035 Firmware C V2x 9150 FirmwareFastconnect 7800 Firmware+37 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing concurrent IOCTL calls. |
1Qualcomm 243215 Mobile Firmware 315 5g Iot FirmwareAqt1000 Firmware+240 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when two threads try to map and unmap a single node simultaneously. |
1Qualcomm 170Ar8035 Firmware Csr8811 FirmwareFastconnect 6700 Firmware+167 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location. |
1Qualcomm 197205 Mobile Firmware 215 Mobile FirmwareApq8017 Firmware+194 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when user provides data for FM HCI command control operations. |
1Qualcomm 282315 5g Iot Firmware 9206 Lte FirmwareApq8017 Firmware+279 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while processing TIM IE from beacon frame as there is no check for IE length. |
1Qualcomm 252Ar8035 Firmware Ar9380 FirmwareCsr8811 Firmware+249 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper. |
1Qualcomm 187Ar8035 Firmware Csr8811 FirmwareFastconnect 6700 Firmware+184 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame. |
1Qualcomm 175Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+172 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when BTFM client sends new messages over Slimbus to ADSP. |