Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 17/50
7.5
CVE-2023-21631

Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received

6.8
CVE-2023-21629

Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.

6.2
CVE-2023-21624

Information disclosure in DSP Services while loading dynamic module.

7.8
CVE-2023-21670

Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode.

8.2
CVE-2023-21669

Information Disclosure in WLAN HOST while sending DPP action frame to peer with an invalid source address.

7.5
CVE-2023-21661

Transient DOS while parsing WLAN beacon or probe-response frame.

7.5
CVE-2023-21660

Transient DOS in WLAN Firmware while parsing FT Information Elements.

7.5
CVE-2023-21659

Transient DOS in WLAN Firmware while processing frames with missing header fields.

7.5
CVE-2023-21658

Transient DOS in WLAN Firmware while processing the received beacon or probe response frame.

7.8
CVE-2023-21657

Memoru corruption in Audio when ADSP sends input during record use case.

7.8
CVE-2023-21656

Memory corruption in WLAN HOST while receiving an WMI event from firmware.

8.4
CVE-2023-21632

Memory corruption in Automotive GPU while querying a gsl memory node.

8.4
CVE-2023-21628

Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.

7.5
CVE-2022-40538

Transient DOS due to reachable assertion in modem while processing sib with incorrect values from network.

7.5
CVE-2022-40536

Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network.

6.2
CVE-2022-40533

Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request.

7.1
CVE-2022-40529

Memory corruption due to improper access control in kernel while processing a mapping request from root process.

7.1
CVE-2022-40525

Information disclosure in Linux Networking Firmware due to unauthorized information leak during side channel analysis.

7.1
CVE-2022-40523

Information disclosure in Kernel due to indirect branch misprediction.

8.4
CVE-2022-40522

Memory corruption in Linux Networking due to double free while handling a hyp-assign.

7.5
CVE-2022-40521

Transient DOS due to improper authorization in Modem

8.4
CVE-2022-40507

Memory corruption due to double free in Core while mapping HLOS address to the list.

8.4
CVE-2022-33307

Memory Corruption due to double free in automotive when a bad HLOS address for one of the lists to be mapped is passed.

5.5
CVE-2022-33303

Transient DOS due to uncontrolled resource consumption in Linux kernel when malformed messages are sent from the Gunyah

6.7
CVE-2022-33267

Memory corruption in Linux while sending DRM request.

7.9
CVE-2022-33264

Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.

6.7
CVE-2022-33263

Memory corruption due to use after free in Core when multiple DCI clients register and deregister.

7.5
CVE-2022-33251

Transient DOS due to reachable assertion in Modem because of invalid network configuration.

6.7
CVE-2022-33240

Memory corruption in Audio due to incorrect type cast during audio use-cases.

6.7
CVE-2022-33230

Memory corruption in FM Host due to buffer copy without checking the size of input in FM Host

6.7
CVE-2022-33227

Memory corruption in Linux android due to double free while calling unregister provider after register call.

6.7
CVE-2022-33226

Memory corruption due to buffer copy without checking the size of input in Core while processing ioctl commands from dia

6.7
CVE-2022-33224

Memory corruption in core due to buffer copy without check9ing the size of input while processing ioctl queries.

7.1
CVE-2022-22076

information disclosure due to cryptographic issue in Core during RPMB read request.

7.5
CVE-2022-22060

Assertion occurs while processing Reconfiguration message due to improper validation

7.5
CVE-2022-40504

Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.

7.3
CVE-2022-33273

Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation.

8.4
CVE-2023-21666

Memory Corruption in Graphics while accessing a buffer allocated through the graphics pool.

8.4
CVE-2023-21665

Memory corruption in Graphics while importing a file.

8.4
CVE-2023-21642

Memory corruption in HAB Memory management due to broad system privileges via physical address.

7.5
CVE-2022-40508

Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is

8.2
CVE-2022-40505

Information disclosure due to buffer over-read in Modem while parsing DNS hostname.

7.5
CVE-2022-34144

Transient DOS due to reachable assertion in Modem during OSI decode scheduling.

7.5
CVE-2022-33305

Transient DOS due to NULL pointer dereference in Modem while sending invalid messages in DCCH.

7.5
CVE-2022-33304

Transient DOS due to NULL pointer dereference in Modem while performing pullup for received TCP/UDP packet.

7.8
CVE-2022-33292

Memory corruption in Qualcomm IPC due to use after free while receiving the incoming packet and reposting it.

6.7
CVE-2022-33281

Memory corruption due to improper validation of array index in computer vision while testing EVA kernel without sending

7.8
CVE-2022-25713

Memory corruption in Automotive due to Improper Restriction of Operations within the Bounds of a Memory Buffer while exp

8.4
CVE-2023-21630

Memory Corruption in Multimedia Framework due to integer overflow when synx bind is called along with synx signal.

8.4
CVE-2022-40532

Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started