Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 15/50
6.1
CVE-2023-28566

Information disclosure in WLAN HAL while handling the WMI state info command.

6.1
CVE-2023-28563

Information disclosure in IOE Firmware while handling WMI command.

7.1
CVE-2023-28556

Cryptographic issue in HLOS during key management.

6.1
CVE-2023-28554

Information Disclosure in Qualcomm IPC while reading values from shared memory in VM.

6.1
CVE-2023-28553

Information Disclosure in WLAN Host when processing WMI event command.

8.2
CVE-2023-28545

Memory corruption in TZ Secure OS while loading an app ELF.

8.4
CVE-2023-24852

Memory Corruption in Core due to secure memory access by user while loading modem image.

9.8
CVE-2023-22388

Memory Corruption in Multi-mode Call Processor while processing bit mask API.

9.3
CVE-2023-21671

Memory Corruption in Core during syscall for Sectools Fuse comparison feature.

8.4
CVE-2023-33039

Memory corruption in Automotive Display while destroying the image handle created using connected display driver.

7.8
CVE-2023-33035

Memory corruption while invoking callback function of AFE from ADSP.

7.8
CVE-2023-33034

Memory corruption while parsing the ADSP response command.

8.4
CVE-2023-33029

Memory corruption in DSP Service during a remote call from HLOS to DSP.

9.8
CVE-2023-33028

Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.

7.5
CVE-2023-33027

Transient DOS in WLAN Firmware while parsing rsn ies.

7.5
CVE-2023-33026

Transient DOS in WLAN Firmware while parsing a NAN management frame.

6.1
CVE-2023-28571

Information disclosure in WLAN HOST while processing the WLAN scan descriptor list during roaming scan.

9.1
CVE-2023-28540

Cryptographic issue in Data Modem due to improper authentication during TLS handshake.

6.6
CVE-2023-28539

Memory corruption in WLAN Host when the firmware invokes multiple WMI Service Available command.

9.8
CVE-2023-24855

Memory corruption in Modem while processing security related configuration before AS Security Exchange.

8.4
CVE-2023-24853

Memory Corruption in HLOS while registering for key provisioning notify.

7.8
CVE-2023-24850

Memory Corruption in HLOS while importing a cryptographic key into KeyMaster Trusted Application.

8.2
CVE-2023-24849

Information Disclosure in data Modem while parsing an FMTP line in an SDP message.

8.2
CVE-2023-24848

Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value.

7.5
CVE-2023-24847

Transient DOS in Modem while allocating DSM items.

8.4
CVE-2023-24844

Memory Corruption in Core while invoking a call to Access Control core library with hardware protected address range.

7.5
CVE-2023-24843

Transient DOS in Modem while triggering a camping on an 5G cell.

8.2
CVE-2023-22385

Memory Corruption in Data Modem while making a MO call or MT VOLTE call.

6.7
CVE-2023-22384

Memory Corruption in VR Service while sending data using Fast Message Queue (FMQ).

7.4
CVE-2023-22382

Weak configuration in Automotive while VM is processing a listener request from TEE.

8.7
CVE-2023-21673

Improper Access to the VM resource manager can lead to Memory Corruption.

5.9
CVE-2023-3024

Forcing the Bluetooth LE stack to segment 'prepare write response' packets can lead to an out-of-bounds memory access.

8.4
CVE-2023-33021

Memory corruption in Graphics while processing user packets for command submission.

7.5
CVE-2023-33020

Transient DOS in WLAN Host when an invalid channel (like channel out of range) is received in STA during CSA IE.

7.5
CVE-2023-33019

Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel

7.5
CVE-2023-33016

Transient DOS in WLAN firmware while parsing MLO (multi-link operation).

7.5
CVE-2023-33015

Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame.

7.5
CVE-2023-28584

Transient DOS in WLAN Host when a mobile station receives invalid channel in CSA IE while doing channel switch announcem

9.8
CVE-2023-28581

Memory corruption in WLAN Firmware while parsing receieved GTK Keys in GTK KDE.

7.8
CVE-2023-28573

Memory corruption in WLAN HAL while parsing WMI command parameters.

7.8
CVE-2023-28567

Memory corruption in WLAN HAL while handling command through WMI interfaces.

7.8
CVE-2023-28565

Memory corruption in WLAN HAL while handling command streams through WMI interfaces.

7.8
CVE-2023-28564

Memory corruption in WLAN HAL while passing command parameters through WMI interfaces.

9.8
CVE-2023-28562

Memory corruption while handling payloads from remote ESL.

7.8
CVE-2023-28560

Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.

7.8
CVE-2023-28559

Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.

7.8
CVE-2023-28558

Memory corruption in WLAN handler while processing PhyID in Tx status handler.

7.8
CVE-2023-28557

Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload.

7.8
CVE-2023-28549

Memory corruption in WLAN HAL while parsing Rx buffer in processing TLV payload.

7.8
CVE-2023-28548

Memory corruption in WLAN HAL while processing Tx/Rx commands from QDART.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started