Qualcomm
46,786 known vulnerabilities
Top Products
An issue was discovered on Samsung mobile devices with P(9.0) (SM6150, SM8150, SM8150_FUSION, exynos7885, exynos9610, an
An issue was discovered on Samsung mobile devices with P(9.0) (SM6150, SM8150, SM8150_FUSION, exynos7885, exynos9610, an
The secret key used to make the Initial Sequence Number in the TCP SYN packet could be brute forced and therefore can be
Possible buffer overflow in WLAN handler due to lack of validation of destination buffer size before copying it in Snapd
Possible buffer overflow in WLAN handler due to lack of validation of destination buffer size before copying into it in
Possible buffer overflow in data offload handler due to lack of check of keydata length when copying data in Snapdragon
Possible buffer overflow in WLAN Parser due to lack of length check when copying data in Snapdragon Auto, Snapdragon Com
Buffer overflow occurs while processing LMP packet in which name length parameter exceeds value specified in BT-specific
Possible integer overflow while checking the length of frame which is a 32 bit integer and is added to another 32 bit in
Possible Integer underflow in WLAN function due to lack of check of data received from user side in Snapdragon Auto, Sna
While parsing Service Descriptor Extended Attribute received as part of SDF frame, there is a possibility that incorrect
Potential buffer over-read due to lack of bound check of memory offset passed in WLAN firmware in Snapdragon Compute, Sn
Buffer Over-read when WLAN module gets a WMI message for SAR limits with invalid number of limits to be enforced in Snap
Access to the uninitialized variable when the driver tries to unmap the dma buffer of a request which was never mapped i
Unhandled paging request is observed due to dereferencing an already freed object because of race condition between spar
Compromised reset handler may bypass access control due to AC config is being reset if debug path is enabled to collect
Out of bound access in msm routing due to lack of check of size before accessing in Snapdragon Auto, Snapdragon Compute,
Null-pointer dereference can occur while accessing the segment element info when it is not allocated and assigned in Sna
Out-of-bound writes occurs due to lack of check of buffer size will cause buffer overflow only in 32bit architecture. in
Possible out of bound memory access while playing a crafted clip in media player in Snapdragon Auto, Snapdragon Compute,
Possible buffer overflow while processing clientlog and serverlog due to lack of validation of data received in logs in
Memory use after free issue in audio due to lack of resource control in Snapdragon Auto, Snapdragon Compute, Snapdragon
Buffer overflow can occur while parsing RSN IE containing list of PMK ID`s which are more than the buffer size in Snapdr
The size of a buffer is determined by addition and multiplications operations that have the potential to overflow due to
Use-after-free in graphics module due to destroying already queued syncobj in error case in Snapdragon Auto, Snapdragon
Buffer overwrite during memcpy due to lack of check on SSID length validation in Snapdragon Auto, Snapdragon Compute, Sn
Buffer overflow due to lack of upper bound check on channel length which is used for a loop. in Snapdragon Compute, Snap
Possible buffer overflow in WLAN WMI handler due to lack of ssid length check when copying data in Snapdragon Auto, Snap
A stack-based buffer overflow exists in the initialization of the identification stage due to lack of check on the numbe
Lack of check that the RX FIFO write index that is read from shared RAM is less than the FIFO size results into memory c
Possibility of null pointer access if the SPDM commands are executed in the non-standard way in TZ. in Snapdragon Auto,
UTCB object has a function pointer called by the reaper to deallocate its memory resources and this address can potentia
Possibility of heap-buffer-overflow during last iteration of loop while populating image version information in diag com
Use after free issue occurs If the real device interface goes down and a route lookup is performed while sending a raw I
Stack overflow can occur when SDP is received with multiple payload types in the FMTP attribute of a video M line in Sna
Buffer overflow can occur when processing non standard SDP video Image attribute parameter in a VILTE\VOLTE call in Snap
Null pointer dereference can happen when parsing udta atom which is non-standard and having invalid depth in Snapdragon
Possible Stack overflow can occur when processing a large SDP body or non standard SDP body without right delimiters in
Filling media attribute tag names without validating the destination buffer size which can result in the buffer overflow
Improper input validation while processing SIP URI received from the network will lead to buffer over-read and then to d
Stack buffer overflow due to instance id is misplaced inside definition of hardware accelerated effects in makefile in S
Multiple Read overflows issue due to improper length check while decoding Identity Request in CSdomain/Authentication Re
Multiple Read overflows due to improper length checks while decoding authentication in Cs domain/RAU Reject and TC cmd i
Multiple Buffer Over-read issue can happen due to improper length checks while decoding Service Reject/RAU Reject/PTMSI
Buffer Over-read when UE is trying to process the message received form the network without zero termination in Snapdrag
Null pointer dereference issue can happen due to improper validation of CSEQ header response received from network in Sn
Buffer overflow can occur in WLAN firmware while parsing beacon/probe_response frames during roaming in Snapdragon Auto,
Out of bound write in WLAN driver due to NULL character not properly placed after SSID name in Snapdragon Auto, Snapdrag
Possible double free issue in WLAN due to lack of checking memory free condition. in Snapdragon Auto, Snapdragon Compute
Possible use after free issue while CRM is accessing the link pointer from device private data due to lack of resource p
Frequently Asked Questions
How many CVEs affect Qualcomm?
Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Qualcomm vulnerabilities?
Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Qualcomm vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Qualcomm Vulnerabilities
CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.
Get Started