Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 13/50
8.4
CVE-2023-43532

Memory corruption while reading ACPI config through the user mode app.

7.5
CVE-2023-43523

Transient DOS while processing 11AZ RTT management action frame received through OTA.

7.5
CVE-2023-43522

Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.

8.6
CVE-2023-43520

Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mappi

7.3
CVE-2023-43519

Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size.

7.3
CVE-2023-43518

Memory corruption in video while parsing invalid mp2 clip.

8.4
CVE-2023-43517

Memory corruption in Automotive Multimedia due to improper access control in HAB.

7.8
CVE-2023-43516

Memory corruption when malformed message payload is received from firmware.

7.8
CVE-2023-43513

Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed w

6.7
CVE-2023-33077

Memory corruption in HLOS while converting from authorization token to HIDL vector.

5.9
CVE-2023-33076

Memory corruption in Core when updating rollback version for TA and OTA feature is enabled.

9.3
CVE-2023-33072

Memory corruption in Core while processing control functions.

6.7
CVE-2023-33069

Memory corruption in Audio while processing the calibration data returned from ACDB loader.

6.7
CVE-2023-33068

Memory corruption in Audio while processing IIR config data from AFE calibration block.

6.7
CVE-2023-33067

Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points

6.1
CVE-2023-33065

Information disclosure in Audio while accessing AVCS services from ADSP payload.

5.5
CVE-2023-33064

Transient DOS in Audio when invoking callback function of ASM driver.

7.1
CVE-2023-33060

Transient DOS in Core when DDR memory check is called while DDR is not initialized.

8.2
CVE-2023-33058

Information disclosure in Modem while processing SIB5.

7.5
CVE-2023-33057

Transient DOS in Multi-Mode Call Processor while processing UE policy container.

7.5
CVE-2023-33049

Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage.

7.8
CVE-2023-33046

Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.

8.4
CVE-2023-43514

Memory corruption while invoking IOCTLs calls from user space for internal mem MAP and internal mem UNMAP.

7.5
CVE-2023-43512

Transient DOS while parsing GATT service data when the total amount of memory that is required by the multiple services

7.5
CVE-2023-43511

Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE

7.8
CVE-2023-33120

Memory corruption in Audio when memory map command is executed consecutively in ADSP.

7.8
CVE-2023-33118

Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound ses

7.8
CVE-2023-33117

Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVC

7.5
CVE-2023-33116

Transient DOS while parsing ieee80211_parse_mscs_ie in WIN WLAN driver.

8.4
CVE-2023-33114

Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitt

8.4
CVE-2023-33113

Memory corruption when resource manager sends the host kernel a reply message with multiple fragments.

7.5
CVE-2023-33112

Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element.

7.8
CVE-2023-33110

The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback fr

7.5
CVE-2023-33109

Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.

8.4
CVE-2023-33108

Memory corruption in Graphics Driver when destroying a context with KGSL_GPU_AUX_COMMAND_TIMELINE objects queued.

8.4
CVE-2023-33094

Memory corruption while running VK synchronization with KASAN enabled.

7.8
CVE-2023-33085

Memory corruption in wearables while processing data from AON.

7.5
CVE-2023-33062

Transient DOS in WLAN Firmware while parsing a BTM request.

7.5
CVE-2023-33040

Transient DOS in Data Modem during DTLS handshake.

6.7
CVE-2023-33038

Memory corruption while receiving a message in Bus Socket Transport Server.

7.1
CVE-2023-33037

Cryptographic issue in Automotive while unwrapping the key secs2d and verifying with RPMB data.

7.1
CVE-2023-33036

Permanent DOS in Hypervisor while untrusted VM without PSCI support makes a PSCI call.

8.4
CVE-2023-33033

Memory corruption in Audio during playback with speaker protection.

9.3
CVE-2023-33032

Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.

9.3
CVE-2023-33030

Memory corruption in HLOS while running playready use-case.

9.8
CVE-2023-33025

Memory corruption in Data Modem when a non-standard SDP body, during a VOLTE call.

7.6
CVE-2023-33014

Information disclosure in Core services while processing a Diag command.

6.7
CVE-2023-28583

Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 ad

8.4
CVE-2023-33107 KEV

Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

8.4
CVE-2023-33106 KEV

Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started