Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 12/50
7.5
CVE-2023-43529

Transient DOS while processing IKEv2 Informational request messages, when a malformed fragment packet is received.

6.1
CVE-2023-43528

Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is

6.8
CVE-2023-43527

Information disclosure while parsing dts header atom in Video.

6.7
CVE-2023-43526

Memory corruption while querying module parameters from Listen Sound model client in kernel from user space.

6.7
CVE-2023-43525

Memory corruption while copying the sound model data from user to kernel buffer during sound model register.

6.7
CVE-2023-43524

Memory corruption when the bandpass filter order received from AHAL is not within the expected range.

6.7
CVE-2023-43521

Memory corruption when multiple listeners are being registered with the same file descriptor.

8.4
CVE-2023-33119

Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.

9.8
CVE-2024-21473

Memory corruption while redirecting log file to any file location with any file name.

8.4
CVE-2024-21472

Memory corruption in Kernel while handling GPU operations.

8.4
CVE-2024-21470

Memory corruption while allocating memory for graphics.

8.4
CVE-2024-21468

Memory corruption when there is failed unmap operation in GPU.

7.3
CVE-2024-21463

Memory corruption while processing Codec2 during v13k decoder pitch synthesis.

7.5
CVE-2024-21454

Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics.

7.5
CVE-2024-21453

Transient DOS while decoding message of size that exceeds the available system memory.

7.3
CVE-2024-21452

Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions.

6.6
CVE-2023-43515

Memory corruption in HLOS while running kernel address sanitizers (syzkaller) on tmecom with DEBUG_FS enabled.

7.8
CVE-2023-33115

Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.

5.5
CVE-2023-33111

Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to A

7.5
CVE-2023-33101

Transient DOS while processing DL NAS TRANSPORT message with payload length 0.

7.5
CVE-2023-33100

Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification.

7.5
CVE-2023-33099

Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR.

8.4
CVE-2023-33023

Memory corruption while processing finish_sign command to pass a rsp buffer.

8.4
CVE-2023-28547

Memory corruption in SPS Application while requesting for public key in sorter TA.

9.8
CVE-2023-43553

Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.

9.8
CVE-2023-43552

Memory corruption while processing MBSSID beacon containing several subelement IE.

7.8
CVE-2023-43550

Memory corruption while processing a QMI request for allocating memory from a DHMS supported subsystem.

8.4
CVE-2023-43549

Memory corruption while processing TPC target power table in FTM TPC.

7.3
CVE-2023-43548

Memory corruption while parsing qcp clip with invalid chunk data size.

8.4
CVE-2023-43547

Memory corruption while invoking IOCTLs calls in Automotive Multimedia.

8.4
CVE-2023-43546

Memory corruption while invoking HGSL IOCTL context create.

8.4
CVE-2023-43541

Memory corruption while invoking the SubmitCommands call on Gfx engine during the graphics render.

8.4
CVE-2023-43540

Memory corruption while processing the IOCTL FM HCI WRITE request.

7.5
CVE-2023-43539

Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol frame.

7.5
CVE-2023-33105

Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transac

7.5
CVE-2023-33104

Transient DOS while processing PDU Release command with a parameter PDU ID out of range.

7.5
CVE-2023-33103

Transient DOS while processing CAG info IE received from NW.

7.5
CVE-2023-33096

Transient DOS while processing DL NAS Transport message, as specified in 3GPP 24.501 v16.

7.5
CVE-2023-33095

Transient DOS while processing multiple payload container type with incorrect container length received in DL NAS transp

5.5
CVE-2023-33090

Transient DOS while processing channel information for speaker protection v2 module in ADSP.

7.5
CVE-2023-33086

Transient DOS while processing multiple IKEV2 Informational Request to device from IPSEC server with different identifie

7.5
CVE-2023-33084

Transient DOS while processing IE fragments from server during DTLS handshake.

5.1
CVE-2023-33078

Information Disclosure while processing IOCTL request in FastRPC.

8.4
CVE-2023-33066

Memory corruption in Audio while processing RT proxy port register driver.

9.8
CVE-2023-28582

Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake.

9.3
CVE-2023-28578

Memory corruption in Core Services while executing the command for removing a single event listener.

7.5
CVE-2023-43536

Transient DOS while parse fils IE with length equal to 1.

8.4
CVE-2023-43535

Memory corruption when negative display IDs are sent as input while processing DISPLAYESCAPE event trigger.

8.6
CVE-2023-43534

Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access po

7.5
CVE-2023-43533

Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started