CVEs (356)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 123Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+120 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside which this element is present. |
1Qualcomm 208315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+205 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while Configuring the SMR/S2CR register in Bypass mode. |
1Qualcomm 117Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+114 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption during GNSS HAL process initialization. |
1Qualcomm 263205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+260 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing voice packet with arbitrary data received from ADSP. |
1Qualcomm 76Fastconnect 6200 Firmware Fastconnect 7800 FirmwareQam8255p Firmware+73 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing GPU commands. |
1Qualcomm 146Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+143 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node. |
1Qualcomm 172215 Mobile Platform Firmware Ar8035 FirmwareCsra6620 Firmware+169 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while handling session errors from firmware. |
1Qualcomm 229315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+226 moreNov 8, 2024 Nov 4, 2024 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions. |
1Qualcomm 98Ar8035 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+95 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS while processing the CU information from RNR IE. |
1Qualcomm 77Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+74 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS while parsing BTM ML IE when per STA profile is not included. |
1Qualcomm 121Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+118 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS while parsing fragments of MBSSID IE from beacon frame. |
1Qualcomm 27Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQcm8550 Firmware+24 moreNov 7, 2024 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing IOCTL calls to unmap the buffers. |
1Qualcomm 91205 Mobile Platform Firmware Apq8017 FirmwareApq8037 Firmware+88 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE. |
1Qualcomm 38Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQca6391 Firmware+35 moreNov 7, 2024 Nov 4, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while invoking IOCTL command from user-space, when a user modifies the original packet size of the command after system properties have been already sent to the EVA driver. |
1Qualcomm 115Ar8035 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+112 moreAug 11, 2025 Oct 7, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing probe response and assoc response frame. |
1Qualcomm 158Ar8035 Firmware Csr8811 FirmwareFastconnect 6700 Firmware+155 moreAug 11, 2025 Oct 7, 2024 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. |
1Qualcomm 118Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+115 moreAug 11, 2025 Oct 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers. |
1Qualcomm 163Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+160 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing IOCTL call for getting group info. |
1Qualcomm 243215 Mobile Firmware 315 5g Iot FirmwareAqt1000 Firmware+240 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when two threads try to map and unmap a single node simultaneously. |
1Qualcomm 170Ar8035 Firmware Csr8811 FirmwareFastconnect 6700 Firmware+167 moreAug 11, 2025 Sep 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location. |