CVEs (1,105)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 125Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+122 moreAug 11, 2025 Jan 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global list while another thread is using it for a process-specific task, issues may arise. |
1Qualcomm 51Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+48 moreAug 11, 2025 Jan 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver. |
1Qualcomm 51Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+48 moreAug 11, 2025 Jan 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when IOCTL call is invoked from user-space to read board data. |
1Qualcomm 9Qcs8550 Firmware Sw5100 FirmwareSw5100p Firmware+6 moreJan 10, 2025 Jan 6, 2025 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process. |
1Qualcomm 38Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQam8295p Firmware+35 moreAug 11, 2025 Jan 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while invoking IOCTL calls to unmap the DMA buffers. |
1Qualcomm 34Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQam8295p Firmware+31 moreAug 11, 2025 Jan 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls, |
1Qualcomm 21Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+18 moreJan 10, 2025 Jan 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing IPA statistics, when there are no active clients registered. |
1Qualcomm 89205 Mobile Platform Firmware 215 Mobile Platform FirmwareApq8017 Firmware+86 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing API calls to NPU with invalid input. |
1Qualcomm 54Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+51 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver. |
1Qualcomm 19Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+16 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while invoking IOCTL calls from user space to set generic private command inside WLAN driver. |
1Qualcomm 50Fastconnect 6200 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+47 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when invalid input is passed to invoke GPU Headroom API call. |
1Qualcomm 123Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+120 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside which this element is present. |
1Qualcomm 323205 Mobile Platform Firmware 315 5g Iot Modem Firmware9205 Lte Modem Firmware+320 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when allocating and accessing an entry in an SMEM partition continuously. |
1Qualcomm 55C V2x 9150 Firmware Fastconnect 6200 FirmwareFastconnect 6800 Firmware+52 moreDec 12, 2024 Dec 2, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption when multiple threads try to unregister the CVP buffer at the same time. |
1Qualcomm 208315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+205 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while Configuring the SMR/S2CR register in Bypass mode. |
1Qualcomm 29Fastconnect 6800 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+26 moreDec 12, 2024 Dec 2, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access. |
1Qualcomm 22Qam8255p Firmware Qam8650p FirmwareQam8775p Firmware+19 moreDec 11, 2024 Dec 2, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption when PAL client calls PAL service APIs by passing a random value as handle and the handle is not validated by the service. |
1Qualcomm 50C V2x 9150 Firmware Fastconnect 6800 FirmwareFastconnect 6900 Firmware+47 moreDec 11, 2024 Dec 2, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware. |
1Qualcomm 51C V2x 9150 Firmware Fastconnect 6800 FirmwareFastconnect 6900 Firmware+48 moreDec 11, 2024 Dec 2, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access. |
1Qualcomm 84Apq8096au Firmware Ar8031 FirmwareAr8035 Firmware+81 moreNov 25, 2024 Nov 22, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Possible out of bound access in audio module due to lack of validation of user provided input. |