← Back

Wcd9390 Firmware

wcd9390_firmware

Vendor: Qualcomm • 356 CVEs

CVEs (356)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Qualcomm
32Fastconnect 6700 Firmware
Fastconnect 6900 FirmwareFastconnect 7800 Firmware+29 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption during the handshake between the Primary Virtual Machine and Trusted Virtual Machine.
1Qualcomm
197205 Mobile Firmware
215 Mobile FirmwareApq8017 Firmware+194 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption when user provides data for FM HCI command control operations.
1Qualcomm
282315 5g Iot Firmware
9206 Lte FirmwareApq8017 Firmware+279 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
1Qualcomm
252Ar8035 Firmware
Ar9380 FirmwareCsr8811 Firmware+249 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.
1Qualcomm
187Ar8035 Firmware
Csr8811 FirmwareFastconnect 6700 Firmware+184 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame.
1Qualcomm
175Ar8035 Firmware
Csra6620 FirmwareCsra6640 Firmware+172 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
1Qualcomm
197205 Mobile Platform Firmware
215 Mobile Platform FirmwareApq8017 Firmware+194 more
Dec 20, 2024
Sep 2, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Transient DOS while handling PS event when Program Service name length offset value is set to 255.
1Qualcomm
196205 Firmware
215 FirmwareApq8017 Firmware+193 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption when Alternative Frequency offset value is set to 255.
1Qualcomm
43Fastconnect 6700 Firmware
Fastconnect 6900 FirmwareFastconnect 7800 Firmware+40 more
Aug 11, 2025
Sep 2, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption while passing untrusted/corrupted pointers from DSP to EVA.
1Qualcomm
331315 5g Iot Modem Firmware
9205 Lte Modem FirmwareAqt1000 Firmware+328 more
Oct 3, 2025
Sep 2, 2024
N/A· v4
6.8 MEDIUM· v3
N/A· v2
memory corruption when an invalid firehose patch command is invoked.
1Qualcomm
47Fastconnect 7800 Firmware
Qam8255p FirmwareQam8650p Firmware+44 more
Oct 3, 2025
Sep 2, 2024
N/A· v4
8.4 HIGH· v3
N/A· v2
Memory corruption while releasing shared resources in MinkSocket listener thread.
1Qualcomm
177Ar8035 Firmware
Fastconnect 6200 FirmwareFastconnect 6700 Firmware+174 more
Oct 3, 2025
Sep 2, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS when processing the non-transmitted BSSID profile sub-elements present within the MBSSID Information Element (IE) of a beacon frame that is received from over-the-air (OTA).
1Qualcomm
2309205 Lte Modem Firmware
Aqt1000 FirmwareAr8031 Firmware+227 more
Oct 3, 2025
Sep 2, 2024
N/A· v4
7.1 HIGH· v3
N/A· v2
Cryptographic issue while parsing RSA keys in COBR format.
1Qualcomm
159205 Mobile Platform Firmware
315 5g Iot Modem Firmware9205 Lte Modem Firmware+156 more
Oct 3, 2025
Sep 2, 2024
N/A· v4
8.2 HIGH· v3
N/A· v2
Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network.
1Qualcomm
53205 Mobile Platform Firmware
Apq8017 FirmwareApq8037 Firmware+50 more
Oct 3, 2025
Sep 2, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in Modem.
1Qualcomm
102Fastconnect 6200 Firmware
Fastconnect 6700 FirmwareFastconnect 6900 Firmware+99 more
Nov 20, 2024
Aug 5, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaiming of memory buffers are performed at the same time.
1Qualcomm
136Ar8035 Firmware
Csra6620 FirmwareCsra6640 Firmware+133 more
Nov 20, 2024
Aug 5, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.
1Qualcomm
164Ar8035 Firmware
Csr8811 FirmwareFastconnect 6700 Firmware+161 more
Nov 20, 2024
Aug 5, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of timestamp.
1Qualcomm
167Csr8811 Firmware
Fastconnect 6800 FirmwareFastconnect 6900 Firmware+164 more
Nov 20, 2024
Aug 5, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
1Qualcomm
179Ar8035 Firmware
Csr8811 FirmwareFastconnect 6700 Firmware+176 more
Nov 20, 2024
Aug 5, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length.