CVEs (472)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 74Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+71 moreOct 28, 2025 Jun 3, 2025 N/A· v4 8.6 HIGH· v3 N/A· v2 Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands. |
1Qualcomm 21Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+18 moreAug 20, 2025 Jun 3, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 memory corruption while processing IOCTL commands, when the buffer in write loopback mode is accessed after being freed. |
1Qualcomm 67Fastconnect 7800 Firmware Immersive Home 3210 Platform FirmwareImmersive Home 326 Platform Firmware+64 moreAug 20, 2025 Jun 3, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while processing the tone measurement response buffer when the response buffer is out of range. |
1Qualcomm 31Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQmp1000 Firmware+28 moreAug 20, 2025 Jun 3, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption during dynamic process creation call when client is only passing address and length of shell binary. |
1Qualcomm 29Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQmp1000 Firmware+26 moreAug 20, 2025 Jun 3, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing INIT and multimode invoke IOCTL calls on FastRPC. |
1Qualcomm 75Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+72 moreOct 28, 2025 Jun 3, 2025 N/A· v4 8.6 HIGH· v3 N/A· v2 Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands. |
1Qualcomm 210Ar8035 Firmware Csr8811 FirmwareFastconnect 6700 Firmware+207 moreNov 28, 2025 Jun 3, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while processing the EHT operation IE in the received beacon frame. |
1Qualcomm 232205 Mobile Platform Firmware 215 Mobile Platform FirmwareApq8017 Firmware+229 moreNov 28, 2025 Jun 3, 2025 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call. |
1Qualcomm 223205 Mobile Platform Firmware 215 Mobile Platform FirmwareApq8017 Firmware+220 moreNov 28, 2025 Jun 3, 2025 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure may occur while processing goodbye RTCP packet from network. |
1Qualcomm 232205 Mobile Platform Firmware 215 Mobile Platform FirmwareApq8017 Firmware+229 moreNov 28, 2025 Jun 3, 2025 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure may occur while decoding the RTP packet with invalid header extension from network. |
1Qualcomm 79Fastconnect 6200 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+76 moreAug 20, 2025 Jun 3, 2025 N/A· v4 8.2 HIGH· v3 N/A· v2 Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing sources. |
1Qualcomm 90Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+87 moreNov 28, 2025 Jun 3, 2025 N/A· v4 6.6 MEDIUM· v3 N/A· v2 Memory corruption while processing IOCTL command to handle buffers associated with a session. |
1Qualcomm 191Aqt1000 Firmware Ar8035 FirmwareFastconnect 6200 Firmware+188 moreNov 28, 2025 Jun 3, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption may occur while attaching VM when the HLOS retains access to VM. |
1Qualcomm 40Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+37 moreAug 11, 2025 May 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing escape code, when DisplayId is passed with large unsigned value. |
1Qualcomm 33Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+30 moreAug 11, 2025 May 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing image encoding, when configuration is NULL in IOCTL parameter. |
1Qualcomm 20Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+17 moreAug 11, 2025 May 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing image encoding, when input buffer length is 0 in IOCTL call. |
1Qualcomm 146Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+143 moreAug 11, 2025 May 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to write null character at the end of buffer. |
1Qualcomm 103215 Mobile Firmware Csra6620 FirmwareCsra6640 Firmware+100 moreAug 11, 2025 May 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while reading the FW response from the shared queue. |
1Qualcomm 13Fastconnect 6900 Firmware Fastconnect 7800 FirmwareSa4150p Firmware+10 moreMay 9, 2025 May 6, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing an IOCTL request, when buffer significantly exceeds the command argument limit. |
1Qualcomm 123Ar8035 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+120 moreAug 11, 2025 May 6, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while parsing per STA profile in ML IE. |