Qualcomm
46,786 known vulnerabilities
Top Products
Missing validation check on CRL issuer name in Snapdragon Automobile, Snapdragon Mobile in versions MSM8996AU, SD 410/12
Restrictions related to the modem (sim lock, sim kill) can be bypassed by manipulating the system to issue a deactivatio
Secure application can access QSEE kernel memory through Ontario kernel driver in Snapdragon Automobile, Snapdragon Mobi
Buffer over-read vulnerabilities in an older version of ASN.1 parser in Snapdragon Mobile in versions SD 600.
Improper input validation leads to buffer overflow while processing network list offload command in WLAN function in Sna
Incorrect bound check can lead to potential buffer overwrite in WLAN controller in Snapdragon Mobile in version SD 835,
Incorrect bound check can lead to potential buffer overwrite in WLAN function in Snapdragon Mobile in version SD 835, SD
When the buffer length passed is very large, bounds check could be bypassed leading to potential buffer overwrite in Sna
When the buffer length passed is very large in WLAN, bounds check could be bypassed leading to potential buffer overwrit
Lack of input validation while copying to buffer in WLAN will lead to a buffer overflow in Snapdragon Mobile in version
Lack of check of buffer size before copying in a WLAN function can lead to a buffer overflow in Snapdragon Mobile in ver
Buffer overflow if the length of passphrase is more than 32 when setting up secure NDP connection in Snapdragon Mobile i
Improper input validation leads to buffer overwrite in the WLAN function that handles WLAN roam buffer in Snapdragon Mob
Improper input validation leads to buffer overwrite in the WLAN function that handles WMI commands in Snapdragon Mobile
Buffer overwrite can happen in WLAN function while processing set pdev parameter command due to lack of input validation
Buffer overwrite can occur when the legacy rates count received from the host is not checked against the maximum number
Lack of buffer length check before copying in WLAN function while processing FIPS event, can lead to a buffer overflow i
Integer overflow may happen in WLAN when calculating an internal structure size due to lack of validation of the input l
Integer overflow may happen when calculating an internal structure size due to lack of validation of the input length in
Buffer overflow can happen in WLAN module due to lack of validation of the input length in Snapdragon Mobile in version
Buffer overflow can happen in WLAN function due to lack of validation of the input length in Snapdragon Mobile in versio
Buffer overwrite can happen in WLAN due to lack of validation of the input length in Snapdragon Mobile in version SD 845
When processing IE set command, buffer overwrite may occur due to lack of input validation of the IE length in Snapdrago
Improper input validation in WLAN encrypt/decrypt module can lead to a buffer copy in Snapdragon Mobile in version SD 83
Improper input validation leads to buffer overwrite in the WLAN function that handles WMI commands in Snapdragon Mobile
Improper input validation in TZ led to array out of bound in TZ function while accessing the peripheral details using th
While processing logs, data is copied into a buffer pointed to by an untrusted pointer in Snapdragon Mobile, Snapdragon
There is improper access control of the SSC and GPU mapped regions which lead to inject code from HLOS in Snapdragon Aut
Improper access control in core module lead XBL_LOADER performs the ZI region clear for QTEE instead of XBL_SEC in Snapd
Unapproved TrustZone applications can be loaded and executed in Snapdragon Mobile in version SD 845, SD 850
Lack of check of valid length of input parameter may cause buffer overwrite in WLAN in Snapdragon Mobile in version SD 8
Lack of check on out of range for channels When processing channel list set command will lead to buffer flow in Snapdrag
Lack of check on remaining length parameter When processing scan start command will lead to buffer flow in Snapdragon Au
Lack of check on out of range of bssid parameter When processing scan start command will lead to buffer flow in Snapdrag
The use of a non-time-constant memory comparison operation can lead to timing/side channel attacks in Snapdragon Mobile
When FW tries to get random mac address generated from new SW RNG and ADC values read are constant then DUT get struck i
A stack-based buffer overflow can occur in a firmware routine in Snapdragon Mobile, Snapdragon Wear in version MDM9206,
A possible integer overflow may happen in WLAN during memory allocation in Snapdragon Mobile in version SD 835, SD 845,
Possible integer overflow may happen in WLAN during memory allocation in Snapdragon Mobile, Snapdragon Wear in version I
When a series of FDAL messages are sent to the modem, a Use After Free condition can occur in Snapdragon Automobile, Sna
XPU Master privilege escalation is possible due to improper access control of unused configuration xPU ports where unuse
ClientEnv exposes services 0-32 to HLOS in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MSM8909W
A micro-core of QMP transportation may cause a macro-core to read from or write to arbitrary memory in Snapdragon Mobile
Modem segments are unlocked after authentication, leaving modem segments open to all in Snapdragon Mobile, Snapdragon We
During secure boot, addition is performed on uint8 ptrs which led to overflow issue in Small Cell SoC, Snapdragon Automo
Under certain mode of operations, HLOS may be able get direct or indirect access through DXE channels to tamper with the
While accessing SafeSwitch services, third party can manipulate a given device and perform unauthorized operation due to
XBL sec mem dump system call allows complete control of EL3 by unlocking all XPUs if enable fuse is not blown in Snapdra
Insufficient memory allocation in boot due to incorrect size being passed could result in out of bounds access in Small
While processing the sensors registry configuration file, if inputs are not validated a buffer overflow will occur in Sn
Frequently Asked Questions
How many CVEs affect Qualcomm?
Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Qualcomm vulnerabilities?
Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Qualcomm vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Qualcomm Vulnerabilities
CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.
Get Started