Qualcomm
46,786 known vulnerabilities
Top Products
Denial of service in baseband when NW configures LTE betaOffset-RI-Index due to lack of data validation in Snapdragon Au
HLOS to access EL3 stack canary by just mapping imem region due to Improper access control and can lead to information e
Out of bound write while parsing SDP string due to missing check on null termination in Snapdragon Auto, Snapdragon Comp
Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon
Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon
Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon
Modem will enter into busy mode in an infinite loop while parsing histogram dimension due to improper validation of inpu
Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon
Potential out of bound read exception when UE receives unusually large number of padding octets in the beginning of ROHC
Out of bound read access in hypervisor due to an invalid read access attempt by passing invalid addresses in Snapdragon
Denial of service in WLAN module due to improper check of subtypes in logic where excessive frames are dropped in Snapdr
Arithmetic overflow can happen while processing NOA IE due to improper error handling in Snapdragon Auto, Snapdragon Com
Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to informati
An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard
A buffer overflow can occur when playing an MKV clip due to lack of input validation in Snapdragon Auto, Snapdragon Comp
Improper access control when using mmap with the kgsl driver with a special offset value that can be provided to map the
Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to informati
Denial of service while processing fine timing measurement request (FTMR) frame with reserved bits set in the FTM parame
Possible denial of service while handling host WMI command due to improper validation in Snapdragon Auto, Snapdragon Com
Possible race condition during async fastrpc session after sending RPC message due to the fastrpc ctx gets free during a
Possible buffer over read while processing P2P IE and NOA attribute of beacon and probe response frames due to improper
Possible buffer over-read while parsing quiet IE in Rx beacon frame due to improper check of IE length in received beaco
Before enqueuing a frame to the PE queue for further processing, an entry in a hash table can be deleted and using a sta
Possible out of bounds while accessing global control elements due to race condition in Snapdragon Auto, Snapdragon Comp
Possible denial of service due to RTT responder consistently rejects all FTMR by transmitting FTM1 with failure status i
Possible memory corruption while processing EAPOL frames due to lack of validation of key length before using it in Snap
Arbitrary memory write issue in video driver while setting the internal buffers in Snapdragon Auto, Snapdragon Compute,
Out of bound in camera driver due to lack of check of validation of array index before copying into array in Snapdragon
Possible memory corruption and information leakage in sub-system due to lack of check for validity and boundary complian
Stack overflow may occur if GSM/WCDMA broadcast config size received from user is larger than variable length array in S
Key material used for TZ diag buffer encryption and other data related to log buffer is not wiped securely due to improp
Out of bound write and read in TA while processing command from NS side due to improper length check on command and resp
Possible out of bound access in TA while processing a command from NS side due to improper length check of response buff
Possible memory corruption in BSI module due to improper validation of parameter count in Snapdragon Auto, Snapdragon Co
User can overwrite Security Code NV item without knowing current SPC due to improper validation of SPC code setting and
Out of bound memory access while playing music playbacks with crafted vorbis content due to improper checks in header ex
Possible buffer overflow while updating ikev2 parameters due to lack of check of input validation for certain parameters
Use after free issue in audio modules while removing and freeing objects during list iteration due to incorrect usage of
Possible out of bound memory access in audio due to integer underflow while processing modified contents in Snapdragon A
Local privilege escalation in admin services in Windows environment can occur due to an arbitrary read issue.
Possible memory out of bound issue during music playback when an incorrect bit stream content is copied into array witho
Pointer variable which is freed is not cleared can result in memory corruption and leads to denial of service in Snapdra
Out of bound access in WLAN driver due to lack of validation of array length before copying into array in Snapdragon Aut
A possible double free or invalid memory access in audio driver while reading Speaker Protection parameters in Snapdrago
Buffer over read can happen in video driver when playing clip with atomsize having value UINT32_MAX in Snapdragon Auto,
An out of bounds read can happen when processing VSA attribute due to improper minimum required length check in Snapdrag
Buffer over-read while processing NDL attribute if attribute length is larger than expected and then FW is treating it a
Out of bound reads might occur in while processing Service descriptor due to improper validation of length of fields in
Out of bounds reads while parsing NAN beacons attributes and OUIs due to improper length of field check in Snapdragon Au
Buffer over-read while parsing RPS due to lack of check of input validation on values received from user side. in Snapdr
Frequently Asked Questions
How many CVEs affect Qualcomm?
Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Qualcomm vulnerabilities?
Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Qualcomm vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Qualcomm Vulnerabilities
CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.
Get Started