Qualcomm
46,786 known vulnerabilities
Top Products
Possible memory overread may be lead to access of sensitive data in Snapdragon Auto, Snapdragon Compute, Snapdragon Cons
Improper authentication in locked memory region can lead to unprivilged access to the memory in Snapdragon Auto, Snapdra
While updating blacklisting region shared buffered memory region is not validated against newly updated black list, caus
An unprivileged user can issue a binder call and cause a system halt in Snapdragon Auto, Snapdragon Compute, Snapdragon
Secure keypad is unlocked with secure display still intact in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer E
ECDSA signature code leaks private keys from secure world to non-secure world in Snapdragon Auto, Snapdragon Compute, Sn
Improper check before assigning value can lead to integer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Co
Signature verification of the skel library could potentially be disabled as the memory region on the remote subsystem in
While processing ssid IE length from remote AP, possible out-of-bounds access may occur due to crafted ssid IE length in
Failure to initialize the extra buffer can lead to an out of buffer access in WLAN function in Snapdragon Auto, Snapdrag
Lack of check in length before using memcpy in WLAN function can lead to OOB access in Snapdragon Auto, Snapdragon Compu
Lack of input validation before copying can lead to a buffer over read in WLAN function in Snapdragon Auto, Snapdragon C
Index of array is processed in a wrong way inside a while loop and result in invalid index (-1 or something else) leads
Improper input validation on input data which is used to locate and copy the additional IEs in WLAN function can lead to
Lack of check on length parameter may cause buffer overflow while processing WMI commands in Snapdragon Auto, Snapdragon
Improper input validation on input which is used as an array index will lead to an out of bounds issue while processing
Data length received from firmware is not validated against the max allowed size which can result in buffer overflow. in
Improper buffer length validation in WLAN function can lead to a potential integer oveflow issue in Snapdragon Auto, Sna
Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler
Improper authentication can happen on Remote command handling due to inappropriate handling of events in Snapdragon Auto
Lack of check of buffer length before copying can lead to buffer overflow in camera module in Small Cell SoC, Snapdragon
An integer underflow may occur due to lack of check when received data length from font_mgr_qsee_request_service is bigg
Secure camera logic allows display/secure camera controllers to access HLOS memory during secure display or camera sessi
A new account can be inserted into simContacts service using Android command line tool in Snapdragon Automobile, Snapdra
While iterating through the models contained in a fixed-size array in the actData structure, which also stores an incorr
In case of using an invalid android verified boot signature with very large length, an integer underflow occurs in Snapd
A Use After Free Condition can occur in Thermal Engine in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in M
While processing camera buffers in camera driver, a use after free condition can occur in Snapdragon Automobile, Snapdra
In QTEE, an incorrect fuse value can be blown in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MD
When HOST sends a Special command ID packet, Controller triggers a RAM Dump and FW reset in Snapdragon Mobile in version
kernel could return a received message length higher than expected, which leads to buffer overflow in a subsequent opera
Interrupt exit code flow may undermine access control policy set forth by secure world can lead to potential secure asse
TZ App dynamic allocations not protected from XBL loader in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Ele
Undefined behavior in UE while processing unknown IEI in OTA message in Snapdragon Auto, Snapdragon Compute, Snapdragon
Insufficient protection of keys in keypad can lead HLOS to gain access to confidential keypad input data in Snapdragon A
Improper input validation in QCPE create function may lead to integer overflow in Snapdragon Auto, Snapdragon Consumer E
Improperly configured memory protection allows read/write access to modem image from HLOS kernel in Snapdragon Auto, Sna
Lack of input validation for data received from user space can lead to an out of bound array issue in Snapdragon Auto, S
Improper validation of array index can lead to unauthorized access while processing debugFS in Snapdragon Auto, Snapdrag
Arbitrary write issue can occur when user provides kernel address in compat mode in Snapdragon Auto, Snapdragon Connecti
KGSL syncsource lock not handled properly during syncsource cleanup can lead to use after free issue in Snapdragon Auto,
Improper input validation in SCM handler to access storage in TZ can lead to unauthorized access in Snapdragon Auto, Sna
Use-after-free vulnerability will occur as there is no protection for the route table`s rule in IPA driver in Snapdragon
Exceeding the limit of usage entries are not tracked and the information will be lost causing the content to lose contin
Improper input validation in wireless service messaging module for data received from broadcast messages can lead to hea
Improper input validation for argument received from HLOS can lead to buffer overflows and unexpected behavior in Snapdr
Improper input validation might result in incorrect app id returned to the caller Instead of returning failure in Snapdr
Improper input validation can lead RW access to secure subsystem from HLOS in Snapdragon Auto, Snapdragon Compute, Snapd
Improper access to HLOS is possible while transferring memory to CPZ in Snapdragon Auto, Snapdragon Compute, Snapdragon
Bytes can be written to fuses from Secure region which can be read later by HLOS in Snapdragon Auto, Snapdragon Compute,
Frequently Asked Questions
How many CVEs affect Qualcomm?
Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Qualcomm vulnerabilities?
Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Qualcomm vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Qualcomm Vulnerabilities
CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.
Get Started