Qualcomm
46,786 known vulnerabilities
Top Products
Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.
Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than
Memory corruption due to incorrect type conversion or cast in audio while using audio playback/capture when crafted addr
Memory corruption due to use after free in Modem while modem initialization.
Information disclosure due to buffer overread in Linux sensors
Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Neighbor List Update
Information disclosure in Modem due to buffer over-read while parsing the wms message received given the buffer and its
Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registration/update/bootstrap r
Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.
Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.
Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write p
Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.
Memory corruption in Automotive Multimedia due to integer overflow to buffer overflow during IOCTL calls in video playba
Transient DOS due to time-of-check time-of-use race condition in Modem while processing RRC Reconfiguration message.
Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment.
Memory corruption due to buffer copy without checking the size of input in modem while decoding raw SMS received.
Information disclosure due to buffer over-read in modem while reading configuration parameters.
Memory corruption due to double free in core while initializing the encryption key.
Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination opti
Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding.
Information disclosure due to buffer over-read while parsing DNS response packets in Modem.
memory corruption in modem due to improper check while calculating size of serialized CoAP message
Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message
Memory corruption in modem due to improper input validation while handling the incoming CoAP message
Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of
Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call
Information disclosure in modem due to missing NULL check while reading packets received from local network
Information disclosure in modem due to buffer over-read while processing packets from DNS server
Information disclosure in modem due to improper check of IP type while processing DNS server query
Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet
Memory correction in modem due to buffer overwrite during coap connection
Memory corruption due to buffer copy without checking the size of input while loading firmware in Linux Kernel.
Memory corruption in Automotive Android OS due to improper validation of array index.
Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response.
Transient DOS due to buffer over-read in WLAN while sending a packet to device.
Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.
Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.
Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM.
Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms.
Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes.
Memory corruption due to buffer copy without checking the size of input in HLOS when input message size is larger than t
Transient DOS in modem due to reachable assertion.
Memory corruption due to stack based buffer overflow in core while sending command from USB of large size.
Memory corruption in Core due to time-of-check time-of-use race condition during dump collection in trust zone.
Memory corruption due to improper validation of array index in Multi-mode call processor.
Transient DOS due to reachable assertion in Modem while processing SIB1 Message.
Transient DOS due to reachable assertion in modem when network repeatedly sent invalid message container for NR to LTE h
Memory corruption in WLAN due to use after free
Transient DOS due to reachable assertion in modem during MIB reception and SIB timeout
Memory corruption due to improper authentication in Qualcomm IPC while loading unsigned lib in audio PD.
Frequently Asked Questions
How many CVEs affect Qualcomm?
Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Qualcomm vulnerabilities?
Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Qualcomm vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Qualcomm Vulnerabilities
CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.
Get Started