Qualcomm
46,786 known vulnerabilities
Top Products
Improper validation of tag id while RRC sending tag id to MAC can lead to TOCTOU race condition in Snapdragon Connectivi
Possible buffer overflow due to improper parsing of headers while playing the FLAC audio clip in Snapdragon Auto, Snapdr
Possible buffer overflow due to lack of validation for the length of NAI string read from EFS in Snapdragon Auto, Snapdr
Improper handling of writes to virtual GICR control can lead to assertion failure in the hypervisor in Snapdragon Auto,
Possible buffer over read due to improper calculation of string length while parsing Id3 tag in Snapdragon Auto, Snapdra
Improper validation of session id in PCM routing process can lead to memory corruption in Snapdragon Auto, Snapdragon Co
Improper memory allocation during counter check DLM handling can lead to denial of service in Snapdragon Auto, Snapdrago
Improper serialization of message queue client registration can lead to race condition allowing multiple gunyah message
Improper verification of timeout-based authentication in identity credential can lead to invalid authorization in HLOS i
Processing DCB/AVB algorithm with an invalid queue index from IOCTL request could lead to arbitrary address modification
Possible out of bounds read due to improper typecasting while handling page fault for global memory in Snapdragon Connec
Possible hypervisor memory corruption due to TOC TOU race condition when updating address mappings in Snapdragon Auto, S
Possible null pointer access due to improper validation of system information message to be processed in Snapdragon Indu
Possible buffer over read due to improper validation of SIB type when processing a NR system Information message in Snap
Possible buffer overflow due to lack of buffer length check during management frame Rx handling in Snapdragon Auto, Snap
Possible out of bound read due to lack of length check of data length for a DIAG event in Snapdragon Auto, Snapdragon Co
Possible out of bound read due to improper validation of certificate chain in SSL or Internet key exchange in Snapdragon
Improper integrity check can lead to race condition between tasks PDCP and RRC? right after a valid RRC security mode co
Possible buffer overflow due to improper validation of SSID length received from beacon or probe response during an IBSS
Disabled SMMU from secure side while RPM is assigned a secure stream can lead to information disclosure in Snapdragon In
Improper validation of permissions for third party application accessing Telephony service API can lead to information d
Possible memory leak due to improper validation of certificate chain length while parsing server certificate chain in Sn
Possible null pointer dereference due to improper validation of RRC connection reconfiguration message in Snapdragon Aut
Possible assertion due to improper validation of rank restriction field in Snapdragon Auto, Snapdragon Compute, Snapdrag
Possible buffer overflow due to improper validation of array index while processing external DIAG command in Snapdragon
Possible buffer over read due to lack of size validation while copying data from DBR buffer to RX buffer and can lead to
RPM secure Stream can access any secure resource due to improper SMMU configuration and can lead to information disclosu
Lack of MBN header size verification against input buffer can lead to memory corruption in Snapdragon Auto, Snapdragon C
Improper access control sequence for AC database after memory allocation can lead to possible memory corruption in Snapd
Improper integrity check can lead to race condition between tasks PDCP and RRC? right after a valid RRC Command packet h
RPM secure Stream can access any secure resource due to improper SMMU configuration in Snapdragon Industrial IOT, Snapdr
RPM secure Stream can access any secure resource due to improper SMMU configuration in Snapdragon Industrial IOT, Snapdr
Improper authorization of a replayed LTE security mode command can lead to a denial of service in Snapdragon Auto, Snapd
Improper integrity check can lead to race condition between tasks PDCP and RRC? after a valid RRC Command packet has bee
Improper integrity check can lead to race condition between tasks PDCP and RRC? after a valid RRC Command packet has bee
Improper buffer size validation of DSM packet received can lead to memory corruption in Snapdragon Auto, Snapdragon Comp
Reachable assertion due to improper validation of coreset in PDCCH configuration in SA mode in Snapdragon Auto, Snapdrag
Reading PRNG output may lead to improper key generation due to lack of buffer validation in Snapdragon Connectivity, Sna
Improper input validation in TrustZone memory transfer interface can lead to information disclosure in Snapdragon Comput
Possible use after free due to lack of null check of DRM file status after file structure is freed in Snapdragon Auto, S
Buffer overflow in sahara protocol while processing commands leads to overwrite of secure configuration data in Snapdrag
Possible unauthorized access to secure space due to improper check of data allowed while flashing the no access control
An Out of Bounds read may potentially occur while processing an IBSS beacon, in Snapdragon Auto, Snapdragon Compute, Sna
Improper handling of multiple session supported by PVM backend can lead to use after free in Snapdragon Auto, Snapdragon
Possible buffer overflow to improper validation of hash segment of file while allocating memory in Snapdragon Connectivi
Possible out of bound read due to improper length calculation of WMI message. in Snapdragon Auto, Snapdragon Compute, Sn
Possible out of bounds access due to improper input validation during graphics profiling in Snapdragon Auto, Snapdragon
Possible out of bound write due to improper validation of number of timer values received from firmware while syncing ti
Possible buffer overflow due to lack of input IB amount validation while processing the user command in Snapdragon Auto
Possible out of bound read due to improper validation of IE length during SSID IE parse when channel is DFS in Snapdrago
Frequently Asked Questions
How many CVEs affect Qualcomm?
Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Qualcomm vulnerabilities?
Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Qualcomm vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Qualcomm Vulnerabilities
CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.
Get Started