Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 14/50
7.5
CVE-2023-33098

Transient DOS while parsing WPA IES, when it is passed with length more than expected size.

7.5
CVE-2023-33097

Transient DOS in WLAN Firmware while processing a FTMR frame.

8.4
CVE-2023-33092

Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expecte

7.5
CVE-2023-33089

Transient DOS when processing a NULL buffer while parsing WLAN vdev.

8.4
CVE-2023-33088

Memory corruption when processing cmd parameters while parsing vdev.

7.8
CVE-2023-33087

Memory corruption in Core while processing RX intent request.

9.8
CVE-2023-33083

Memory corruption in WLAN Host while processing RRM beacon on the AP.

9.8
CVE-2023-33082

Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.

7.5
CVE-2023-33081

Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast.

7.5
CVE-2023-33080

Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.

7.8
CVE-2023-33079

Memory corruption in Audio while running invalid audio recording from ADSP.

8.4
CVE-2023-33071

Memory corruption in Automotive OS whenever untrusted apps try to access HAb for graphics functionalities.

7.1
CVE-2023-33070

Transient DOS in Automotive OS due to improper authentication to the secure IO calls.

7.8
CVE-2023-33063 KEV

Memory corruption in DSP Services during a remote call from HLOS to DSP.

9.1
CVE-2023-33054

Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data.

8.4
CVE-2023-33053

Memory corruption in Kernel while parsing metadata.

7.5
CVE-2023-33044

Transient DOS in Data modem while handling TLB control messages from the Network.

7.5
CVE-2023-33043

Transient DOS in Modem when a Beam switch request is made with a non-configured BWP.

7.5
CVE-2023-33042

Transient DOS in Modem after RRC Setup message is received.

7.5
CVE-2023-33041

Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while looking up peer ids.

6.7
CVE-2023-33024

Memory corruption while sending SMS from AP firmware.

8.4
CVE-2023-33022

Memory corruption in HLOS while invoking IOCTL calls from user-space.

7.8
CVE-2023-33018

Memory corruption while using the UIM diag command to get the operators name.

7.8
CVE-2023-33017

Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.

7.5
CVE-2023-28588

Transient DOS in Bluetooth Host while rfc slot allocation.

7.8
CVE-2023-28587

Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.

6.0
CVE-2023-28586

Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.

8.2
CVE-2023-28585

Memory corruption while loading an ELF segment in TEE Kernel.

6.7
CVE-2023-28580

Memory corruption in WLAN Host while setting the PMK length in PMK length in internal cache.

6.7
CVE-2023-28579

Memory Corruption in WLAN Host while deserializing the input PMK bytes without checking the input PMK length.

7.8
CVE-2023-28551

Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input a

7.8
CVE-2023-28550

Memory corruption in MPP performance while accessing DSM watermark using external memory address.

7.8
CVE-2023-28546

Memory Corruption in SPS Application while exporting public key in sorter TA.

6.7
CVE-2023-22668

Memory Corruption in Audio while invoking IOCTLs calls from the user-space.

6.7
CVE-2023-22383

Memory Corruption in camera while installing a fd for a particular DMA buffer.

6.7
CVE-2023-21634

Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM.

8.4
CVE-2023-33074

Memory corruption in Audio when SSR event is triggered after music playback is stopped.

7.5
CVE-2023-33061

Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame.

7.8
CVE-2023-33059

Memory corruption in Audio while processing the VOC packet data from ADSP.

7.5
CVE-2023-33056

Transient DOS in WLAN Firmware when firmware receives beacon including T2LM IE.

7.8
CVE-2023-33055

Memory Corruption in Audio while invoking callback function in driver from ADSP.

7.5
CVE-2023-33048

Transient DOS in WLAN Firmware while parsing t2lm buffers.

7.5
CVE-2023-33047

Transient DOS in WLAN Firmware while parsing no-inherit IES.

9.8
CVE-2023-33045

Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.

7.8
CVE-2023-33031

Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.

9.0
CVE-2023-28574

Memory corruption in core services when Diag handler receives a command to configure event listeners.

6.6
CVE-2023-28572

Memory corruption in WLAN HOST while processing the WLAN scan descriptor list.

6.7
CVE-2023-28570

Memory corruption while processing audio effects.

6.1
CVE-2023-28569

Information disclosure in WLAN HAL while handling command through WMI interfaces.

6.1
CVE-2023-28568

Information disclosure in WLAN HAL when reception status handler is called.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started