Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 16/50
7.8
CVE-2023-28544

Memory corruption in WLAN while sending transmit command from HLOS to UTF handlers.

8.1
CVE-2023-28543

A malformed DLC can trigger Memory Corruption in SNPE library due to out of bounds read, such as by loading an untrusted

8.4
CVE-2023-28538

Memory corruption in WIN Product while invoking WinAcpi update driver in the UEFI region.

6.5
CVE-2023-21667

Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard.

7.8
CVE-2023-21664

Memory Corruption in Core Platform while printing the response buffer in log.

6.7
CVE-2023-21663

Memory Corruption while accessing metadata in Display.

7.8
CVE-2023-21662

Memory corruption in Core Platform while printing the response buffer in log.

6.7
CVE-2023-21655

Memory corruption in Audio while validating and mapping metadata.

6.7
CVE-2023-21654

Memory corruption in Audio during playback session with audio effects enabled.

7.5
CVE-2023-21653

Transient DOS in Modem while processing RRC reconfiguration message.

7.5
CVE-2023-21646

Transient DOS in Modem while processing invalid System Information Block 1.

6.7
CVE-2023-21644

Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request.

6.7
CVE-2023-21636

Memory Corruption due to improper validation of array index in Linux while updating adn record.

8.4
CVE-2022-40534

Memory corruption due to improper validation of array index in Audio.

6.7
CVE-2022-40524

Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service.

8.4
CVE-2022-33275

Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.

5.1
CVE-2022-33220

Information disclosure in Automotive multimedia due to buffer over-read.

6.7
CVE-2023-28577

In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a functio

6.4
CVE-2023-28576

The buffer obtained from kernel APIs such as cam_mem_get_cpu_buf() may be readable/writable in userspace after kernel ac

6.7
CVE-2023-28575

The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead

9.8
CVE-2023-28561

Memory corruption in QESL while processing payload from external ESL device to firmware.

7.5
CVE-2023-28555

Transient DOS in Audio while remapping channel buffer in media codec decoding.

8.4
CVE-2023-28537

Memory corruption while allocating memory in COmxApeDec module in Audio.

8.4
CVE-2023-22666

Memory Corruption in Audio while playing amrwbplus clips with modified content.

7.7
CVE-2023-21652

Cryptographic issue in HLOS as derived keys used to encrypt/decrypt information is present on stack after use.

9.3
CVE-2023-21651

Memory Corruption in Core due to incorrect type conversion or cast in secure_io_read/write function in TEE.

6.7
CVE-2023-21650

Memory Corruption in GPS HLOS Driver when injectFdclData receives data with invalid data length.

6.7
CVE-2023-21649

Memory corruption in WLAN while running doDriverCmd for an unspecific command.

6.7
CVE-2023-21648

Memory corruption in RIL while trying to send apdu packet.

6.5
CVE-2023-21647

Information disclosure in Bluetooth when an GATT packet is received due to improper input validation.

9.1
CVE-2023-21643

Memory corruption due to untrusted pointer dereference in automotive during system call.

6.7
CVE-2023-21627

Memory corruption in Trusted Execution Environment while calling service API with invalid address.

7.1
CVE-2023-21626

Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key.

8.2
CVE-2023-21625

Information disclosure in Network Services due to buffer over-read while the device receives DNS response.

9.8
CVE-2022-40510

Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.

7.8
CVE-2023-28542

Memory Corruption in WLAN HOST while fetching TX status information.

7.8
CVE-2023-28541

Memory Corruption in Data Modem while processing DMA buffer release event about CFR data.

7.8
CVE-2023-24854

Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message.

7.8
CVE-2023-24851

Memory Corruption in WLAN HOST while parsing QMI response message from firmware.

8.4
CVE-2023-22667

Memory Corruption in Audio while allocating the ion buffer during the music playback.

7.8
CVE-2023-22387

Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption.

7.8
CVE-2023-22386

Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory.

8.4
CVE-2023-21672

Memory corruption in Audio while running concurrent tunnel playback or during concurrent audio tunnel recording sessions

6.6
CVE-2023-21641

An app with non-privileged access can change global system brightness and cause undesired system behavior.

6.7
CVE-2023-21640

Memory corruption in Linux when the file upload API is called with parameters having large buffer.

6.7
CVE-2023-21639

Memory corruption in Audio while processing sva_model_serializer using memory size passed by HIDL client.

6.7
CVE-2023-21638

Memory corruption in Video while calling APIs with different instance ID than the one received in initialization.

6.7
CVE-2023-21637

Memory corruption in Linux while calling system configuration APIs.

6.7
CVE-2023-21635

Memory Corruption in Data Network Stack & Connectivity when sim gets detected on telephony.

6.7
CVE-2023-21633

Memory Corruption in Linux while processing QcRilRequestImsRegisterMultiIdentityMessage request.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started