Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 18/50
8.2
CVE-2022-40503

Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.

6.8
CVE-2022-33302

Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than

6.7
CVE-2022-33301

Memory corruption due to incorrect type conversion or cast in audio while using audio playback/capture when crafted addr

6.7
CVE-2022-33298

Memory corruption due to use after free in Modem while modem initialization.

6.8
CVE-2022-33297

Information disclosure due to buffer overread in Linux sensors

5.9
CVE-2022-33296

Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Neighbor List Update

8.2
CVE-2022-33295

Information disclosure in Modem due to buffer over-read while parsing the wms message received given the buffer and its

7.5
CVE-2022-33294

Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registration/update/bootstrap r

8.2
CVE-2022-33291

Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.

6.8
CVE-2022-33289

Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.

9.3
CVE-2022-33288

Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write p

8.2
CVE-2022-33287

Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.

8.4
CVE-2022-33282

Memory corruption in Automotive Multimedia due to integer overflow to buffer overflow during IOCTL calls in video playba

7.5
CVE-2022-33270

Transient DOS due to time-of-check time-of-use race condition in Modem while processing RRC Reconfiguration message.

9.3
CVE-2022-33269

Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment.

9.8
CVE-2022-33259

Memory corruption due to buffer copy without checking the size of input in modem while decoding raw SMS received.

8.2
CVE-2022-33258

Information disclosure due to buffer over-read in modem while reading configuration parameters.

9.3
CVE-2022-33231

Memory corruption due to double free in core while initializing the encryption key.

8.2
CVE-2022-33228

Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination opti

7.5
CVE-2022-33223

Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding.

8.2
CVE-2022-33222

Information disclosure due to buffer over-read while parsing DNS response packets in Modem.

9.8
CVE-2022-33211

memory corruption in modem due to improper check while calculating size of serialized CoAP message

8.2
CVE-2022-25747

Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message

9.8
CVE-2022-25745

Memory corruption in modem due to improper input validation while handling the incoming CoAP message

9.8
CVE-2022-25740

Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of

7.5
CVE-2022-25739

Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call

7.5
CVE-2022-25737

Information disclosure in modem due to missing NULL check while reading packets received from local network

7.5
CVE-2022-25731

Information disclosure in modem due to buffer over-read while processing packets from DNS server

8.2
CVE-2022-25730

Information disclosure in modem due to improper check of IP type while processing DNS server query

8.2
CVE-2022-25726

Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet

9.8
CVE-2022-25678

Memory correction in modem due to buffer overwrite during coap connection

8.4
CVE-2022-40540

Memory corruption due to buffer copy without checking the size of input while loading firmware in Linux Kernel.

8.4
CVE-2022-40539

Memory corruption in Automotive Android OS due to improper validation of array index.

7.3
CVE-2022-40537

Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response.

7.5
CVE-2022-40535

Transient DOS due to buffer over-read in WLAN while sending a packet to device.

8.4
CVE-2022-40531

Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.

8.4
CVE-2022-40530

Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.

7.5
CVE-2022-40527

Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM.

7.3
CVE-2022-40515

Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms.

7.5
CVE-2022-33309

Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes.

7.8
CVE-2022-33278

Memory corruption due to buffer copy without checking the size of input in HLOS when input message size is larger than t

7.5
CVE-2022-33272

Transient DOS in modem due to reachable assertion.

5.9
CVE-2022-33260

Memory corruption due to stack based buffer overflow in core while sending command from USB of large size.

9.3
CVE-2022-33257

Memory corruption in Core due to time-of-check time-of-use race condition during dump collection in trust zone.

9.8
CVE-2022-33256

Memory corruption due to improper validation of array index in Multi-mode call processor.

7.5
CVE-2022-33254

Transient DOS due to reachable assertion in Modem while processing SIB1 Message.

7.5
CVE-2022-33250

Transient DOS due to reachable assertion in modem when network repeatedly sent invalid message container for NR to LTE h

6.7
CVE-2022-33245

Memory corruption in WLAN due to use after free

7.5
CVE-2022-33244

Transient DOS due to reachable assertion in modem during MIB reception and SIB timeout

7.8
CVE-2022-33242

Memory corruption due to improper authentication in Qualcomm IPC while loading unsigned lib in audio PD.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started