Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 33/50
9.8
CVE-2020-3663

Buffer over-write may occur during fetching track decoder specific information if cb size exceeds buffer size in Snapdra

9.8
CVE-2020-3662

Buffer overflow can occur while parsing eac3 header while playing the clip which is nonstandard in Snapdragon Auto, Snap

9.8
CVE-2020-3661

Buffer overflow will happen while parsing mp4 clip with corrupted sample atoms values which exceeds MAX_UINT32 range due

9.8
CVE-2020-3660

Possible null-pointer dereference can occur while parsing mp4 clip with corrupted sample table atoms in Snapdragon Auto,

9.1
CVE-2020-3658

Possible null-pointer dereference can occur while parsing mp4 clip with corrupted sample table atoms in Snapdragon Auto,

7.8
CVE-2020-3642

Use after free issue in camera applications when used randomly over multiple operations due to pointer not set to NULL a

7.8
CVE-2020-3635

Stack based overflow If the maximum number of arguments allowed per request in perflock exceeds in Snapdragon Auto, Snap

9.8
CVE-2020-3628

Improper access due to socket opened by the logging application without specifying localhost address in Snapdragon Consu

7.8
CVE-2020-3626

Any application can bind to it and exercise the APIs due to no protection for AIDL uimlpaservice in Snapdragon Auto, Sna

9.8
CVE-2020-3614

Possible buffer overflow while copying the frame to local buffer due to lack of check of length before copying in Snapdr

7.8
CVE-2020-3613

Double free issue in kernel memory mapping due to lack of memory protection mechanism in Snapdragon Compute, Snapdragon

7.8
CVE-2019-14094

Integer overflow in diag command handler when user inputs a large value for number of tasks field in the request packet

5.5
CVE-2019-14092

System Services exports services without permission protect and can lead to information exposure in Snapdragon Industria

7.8
CVE-2019-14091

Double free issue in NPU due to lack of resource locking mechanism to avoid race condition in Snapdragon Auto, Snapdrago

9.8
CVE-2019-14080

Out of bound write can happen due to lack of check of array index value while parsing SDP attribute for SAR in Snapdrago

7.8
CVE-2019-14076

Buffer overflow occurs while processing an subsample data length out of range due to lack of user input validation in Sn

9.8
CVE-2019-14073

Copying RTCP messages into the output buffer without checking the destination buffer size which could lead to a remote s

9.8
CVE-2019-14062

Buffer overflows while decoding setup message from Network due to lack of check of IE message length received from netwo

7.8
CVE-2019-14047

While IPA driver processes route add rule IOCTL, there is no input validation of the rule ID prior to adding the rule to

5.5
CVE-2019-10626

Payload size is not validated before reading memory that may cause issue of accessing invalid pointer or some garbage da

7.8
CVE-2019-10597

kernel writes to user passed address without any checks can lead to arbitrary memory write in Snapdragon Auto, Snapdrago

7.0
CVE-2020-3680

A race condition can occur when using the fastrpc memory mapping API. in Snapdragon Auto, Snapdragon Compute, Snapdragon

7.5
CVE-2020-3645

Firmware will hit assert in WLAN firmware If encrypted data length in FILS IE of reassoc response is more than 528 bytes

9.8
CVE-2020-3641

Integer overflow may occur if atom size is less than atom offset as there is improper validation of atom size in Snapdra

9.8
CVE-2020-3633

Array out of bound may occur while playing mp3 file as no check is there on offset if it is greater than the buffer allo

7.8
CVE-2020-3630

Possibility of out of bound access while processing the responses from video firmware in Snapdragon Auto, Snapdragon Com

7.8
CVE-2020-3625

When making query to DSP capabilities, Stack out of bounds occurs due to wrong buffer length configured for DSP attribut

7.8
CVE-2020-3623

kernel failure due to load failures while running v1 path directly via kernel in Snapdragon Mobile in SM8250, SXR2130

7.8
CVE-2020-3618

NULL exception due to accessing bad pointer while posting events on RT FIFO in Snapdragon Compute, Snapdragon Mobile, Sn

7.8
CVE-2020-3616

Buffer overflow in display function due to memory copy without checking length of size using strcpy function in Snapdrag

9.8
CVE-2020-3615

Valid deauth/disassoc frames is dropped in case if RMF is enabled and some rouge peer keep on sending rogue deauth/disas

7.8
CVE-2020-3610

Possibility of double free of the drawobj that is added to the drawqueue array of the context during IOCTL commands as t

7.8
CVE-2019-14087

Failure in buffer management while accessing handle for HDR blit when color modes not supported by display in Snapdragon

7.8
CVE-2019-14078

Out of bound memory access while processing qpay due to not validating length of the response buffer provided by User. i

7.8
CVE-2019-14077

Out of bound memory access while processing ese transmit command due to passing Response buffer received from user in Sn

5.5
CVE-2019-14067

Using non-time-constant functions like memcmp to compare sensitive data can lead to information leakage through timing s

7.8
CVE-2019-14066

Integer overflow in calculating estimated output buffer size when getting a list of installed Feature IDs, Serial Number

7.8
CVE-2019-14054

Improper permissions in XBL_SEC region enable user to update XBL_SEC code and data and divert the RAM dump path to norma

7.1
CVE-2019-14053

When attempting to create a new XFRM policy, a stack out-of-bounds read will occur if the user provides a template where

7.1
CVE-2019-14043

Out of bound read in Fingerprint application due to requested data is being used without length check in Snapdragon Auto

7.1
CVE-2019-14042

Out of bound read in in fingerprint application due to requested data assigned to a local buffer without length check in

7.1
CVE-2019-14039

Out of bound read in adm call back function due to incorrect boundary check for payload in command response in Snapdrago

7.1
CVE-2019-14038

Buffer over-read in ADSP parse function due to lack of check for availability of sufficient data payload received in com

5.5
CVE-2019-20775

An issue was discovered on LG mobile devices with Android OS 9.0 (Qualcomm SDM450, SDM845, SM6150, and SM8150 chipsets)

9.1
CVE-2020-3653

Possible buffer over-read in windows wlan driver function due to lack of check of length of variable received from users

9.1
CVE-2020-3652

Possible buffer over-read issue in windows x86 wlan driver function while processing beacon or request frame due to lack

7.5
CVE-2020-3651

Active command timeout since WM status change cmd is not removed from active queue if peer sends multiple deauth frames.

7.8
CVE-2019-14135

Possible integer overflow to buffer overflow in WLAN while parsing nonstandard NAN IE messages. in Snapdragon Auto, Snap

9.8
CVE-2019-14134

Possible out of bound access in WLAN handler when the received value of length in rx path is shorter than the expected v

9.8
CVE-2019-14132

Buffer over-write when this 0-byte buffer is typecasted to some other structure and hence memory corruption in Snapdrago

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started