Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 6/50
6.6
CVE-2024-53013

Memory corruption may occur while processing voice call registration with user.

7.8
CVE-2024-53010

Memory corruption may occur while attaching VM when the HLOS retains access to VM.

7.8
CVE-2025-21475

Memory corruption while processing escape code, when DisplayId is passed with large unsigned value.

7.8
CVE-2025-21470

Memory corruption while processing image encoding, when configuration is NULL in IOCTL parameter.

7.8
CVE-2025-21469

Memory corruption while processing image encoding, when input buffer length is 0 in IOCTL call.

7.8
CVE-2025-21468

Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to w

7.8
CVE-2025-21467

Memory corruption while reading the FW response from the shared queue.

7.8
CVE-2025-21462

Memory corruption while processing an IOCTL request, when buffer significantly exceeds the command argument limit.

7.8
CVE-2025-21460

Memory corruption while processing a message, when the buffer is controlled by a Guest VM, the value can be changed cont

7.5
CVE-2025-21459

Transient DOS while parsing per STA profile in ML IE.

7.8
CVE-2025-21453

Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential f

7.5
CVE-2024-49847

Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key data IE.

8.2
CVE-2024-49846

Memory corruption while decoding of OTA messages from T3448 IE.

7.8
CVE-2024-49845

Memory corruption during the FRS UDS generation process.

7.8
CVE-2024-49844

Memory corruption while triggering commands in the PlayReady Trusted application.

7.8
CVE-2024-49842

Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.

7.8
CVE-2024-49841

Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.

7.8
CVE-2024-49835

Memory corruption while reading secure file.

6.6
CVE-2024-49830

Memory corruption while processing an IOCTL call to set mixer controls.

6.7
CVE-2024-49829

Memory corruption can occur during context user dumps due to inadequate checks on buffer length.

6.6
CVE-2024-45583

Memory corruption while handling multiple IOCTL calls from userspace to operate DMA operations.

6.6
CVE-2024-45581

Memory corruption while sound model registration for voice activation with audio kernel driver.

7.8
CVE-2024-45579

Memory corruption may occur when invoking IOCTL calls from userspace to the camera kernel driver to dump request informa

7.8
CVE-2024-45578

Memory corruption while acquire and update IOCTLs during IFE output resource ID validation.

7.8
CVE-2024-45577

Memory corruption while invoking IOCTL calls from userspace to camera kernel driver to dump request information.

7.8
CVE-2024-45576

Memory corruption while prociesing command buffer buffer in OPE module.

7.8
CVE-2024-45575

Memory corruption Camera kernel when large number of devices are attached through userspace.

7.8
CVE-2024-45574

Memory corruption during array access in Camera kernel due to invalid index from invalid command data.

6.6
CVE-2024-45570

Memory corruption may occur during IO configuration processing when the IO port count is invalid.

6.7
CVE-2024-45568

Memory corruption due to improper bounds check while command handling in camera-kernel driver.

7.8
CVE-2024-45567

Memory corruption while encoding JPEG format.

7.8
CVE-2024-45566

Memory corruption during concurrent buffer access due to modification of the reference count.

7.8
CVE-2024-45565

Memory corruption when blob structure is modified by user-space after kernel verification.

7.8
CVE-2024-45564

Memory corruption during concurrent access to server info object due to incorrect reference count update.

6.6
CVE-2024-45563

Memory corruption while handling schedule request in Camera Request Manager(CRM) due to invalid link count in the corres

6.6
CVE-2024-45562

Memory corruption during concurrent access to server info object due to unprotected critical field.

7.8
CVE-2024-45554

Memory corruption during concurrent SSR execution due to race condition on the global maps list.

7.5
CVE-2025-21448

Transient DOS may occur while parsing SSID in action frames.

7.8
CVE-2025-21447

Memory corruption may occur while processing device IO control call for session control.

7.8
CVE-2025-21443

Memory corruption while processing message content in eAVB.

7.8
CVE-2025-21442

Memory corruption while transmitting packet mapping information with invalid header payload size.

7.8
CVE-2025-21441

Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.

7.8
CVE-2025-21440

Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.

7.8
CVE-2025-21439

Memory corruption may occur while reading board data via IOCTL call when the WLAN driver copies the content to the provi

7.8
CVE-2025-21438

Memory corruption while IOCTL call is invoked from user-space to read board data.

7.8
CVE-2025-21437

Memory corruption while processing memory map or unmap IOCTL operations simultaneously.

7.8
CVE-2025-21436

Memory corruption may occur while initiating two IOCTL calls simultaneously to create processes from two different threa

7.5
CVE-2025-21435

Transient DOS may occur while parsing extended IE in beacon.

7.5
CVE-2025-21434

Transient DOS may occur while parsing EHT operation IE or EHT capability IE.

5.5
CVE-2025-21431

Information disclosure may be there when a guest VM is connected.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started