Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

2,286 known vulnerabilities

2
CRITICAL
76
HIGH
39
MEDIUM

Top Products

fastconnect 6900 firmware 55 fastconnect 6900 55 fastconnect 7800 firmware 54 fastconnect 7800 54 fastconnect 6700 firmware 43 fastconnect 6700 43 fastconnect 6200 firmware 34 fastconnect 6200 34 cologne firmware 28 cologne 28
117 CVEs · Page 1/3
7.6
CVE-2026-25292

Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration

9.6
CVE-2026-25289

Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with inv

7.4
CVE-2026-25288

Transient DOS when processing a short target wake time channel usage response frame with insufficient packet size.

7.5
CVE-2026-24084

Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed cap

7.8
CVE-2026-24083

Memory Corruption while processing IOCTL device driver requests with invalid arguments.

7.8
CVE-2026-24080

Memory Corruption when handling malformed request parameters in the fingerprint TA.

8.1
CVE-2026-24079

Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.

6.5
CVE-2026-24078

Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling.

6.5
CVE-2026-24077

Information Disclosure when processing wireless network channel switch information with improperly formatted length fiel

6.7
CVE-2026-24076

Memory Corruption when processing registry values with incorrect types using a direct query method.

7.8
CVE-2026-21366

Memory corruption while processing a packet with a size close to the maximum allowed value.

7.8
CVE-2026-25271

Memory Corruption when processing asynchronous input parameters due to improper handling of modified values between chec

8.8
CVE-2026-25268

Memory Corruption when processing invalid HT40 channel layouts during dynamic channel switching operations.

5.3
CVE-2026-21384

Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported

7.1
CVE-2026-21383

Cryptographic Issue when using a static initialization vector for AES-GCM key wrapping, which requires a unique value fo

7.8
CVE-2026-21379

Memory Corruption when allocating memory with sizes that exceed the maximum allowed value.

5.3
CVE-2026-21370

Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values.

5.3
CVE-2026-21369

Memory Corruption when handling flash commands due to outdated LED count values being used after userspace modification.

5.3
CVE-2026-21368

Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.

6.6
CVE-2025-59617

Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input.

6.6
CVE-2025-59616

Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input due to accessing alrea

6.6
CVE-2025-59615

Memory Corruption when invoking device input/output control operations for mapping and unmapping persistent memory buffe

8.8
CVE-2026-25277

Memory corruption while using Strongbox due to buffer overflow.

8.8
CVE-2026-25276

Memory corruption while using Strongbox due to missing bounds check.

7.8
CVE-2026-25260

Memory Corruption when accessing shared buffers without validation of concurrent user-mode input modifications.

7.8
CVE-2026-25259

Memory corruption while processing multiple IOCTL command for escape operations.

7.8
CVE-2026-25258

Memory corruption while processing IOCTL calls for escape operations.

7.2
CVE-2026-24092

Memory Corruption when processing fastboot commands to set display mode.

7.2
CVE-2026-24091

Memory corruption while processing fastboot commands with improperly formatted input.

7.1
CVE-2026-24090

Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow.

7.2
CVE-2026-24089

Memory corruption while processing fastboot commands with invalid input.

8.2
CVE-2026-24088

Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bo

7.2
CVE-2026-24087

Memory corruption while processing fastboot OEM commands.

7.2
CVE-2026-24085

Memory Corruption when processing display command line information due to improper initialization of a variable.

6.7
CVE-2025-59614

Memory Corruption when sending random number generator command with insufficient output buffer size.

6.7
CVE-2025-59613

Memory Corruption when output buffer size is smaller than input buffer size during data copying operation.

6.7
CVE-2025-59612

Memory corruption in windows drivers while sending incorrect trusted application request

6.7
CVE-2025-59611

Memory corruption in diagnostic services due to absence of input validation

6.4
CVE-2025-59610

Memory Corruption when processing IOCTL requests with mismatched API versions due to concurrent modification of user-spa

5.5
CVE-2025-59609

Information Disclosure when processing advertisement frames with malformed MBSSID elements of insufficient length.

7.8
CVE-2025-59606

Memory Corruption when writing to invalid memory locations occurs due to heap memory exhaustion during secure data initi

7.8
CVE-2025-59605

Memory Corruption when processing device identifier strings that exceed the expected maximum length.

7.8
CVE-2025-59604

Memory Corruption when running a memory copy operation due to invalid writes caused by a null pointer.

6.5
CVE-2025-59601

Information Disclosure when resetting device to factory default settings through powerline interface allows unauthorized

9.6
CVE-2026-25293

Buffer overflow due to incorrect authorization in PLC FW

5.5
CVE-2026-25266

Memory corruption while processing IOCTL command when device is in power-save state.

7.8
CVE-2026-24082

Memory Corruption when copying data from a freed source while executing performance counter deselect operation.

7.8
CVE-2025-47408

Memory corruption when another driver calls an IOCTL with invalid input/output buffer.

7.8
CVE-2025-47407

Memory corruption while creating a process on the digital signal processor due to allocation failure at the kernel level

6.1
CVE-2025-47406

Information Disclosure while processing IOCTL handler callbacks without verifying buffer size.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 2,286 CVE records in our database, including 22 critical and 1506 high severity vulnerabilities. 1 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 22 critical severity (CVSS 9.0+) and 1506 high severity (CVSS 7.0-8.9) vulnerabilities. 1 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started