Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 7/50
7.5
CVE-2025-21430

Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.

7.5
CVE-2025-21429

Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.

7.5
CVE-2025-21428

Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSp

7.3
CVE-2025-21425

Memory corruption may occur due top improper access control in HAB process.

7.8
CVE-2025-21423

Memory corruption occurs when handling client calls to EnableTestMode through an Escape call.

7.8
CVE-2025-21421

Memory corruption while processing escape code in API.

6.7
CVE-2024-49848

Memory corruption while processing multiple IOCTL calls from HLOS to DSP.

7.8
CVE-2024-45557

Memory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation.

6.5
CVE-2024-45556

Cryptographic issue may arise because the access control configuration permits Linux to read key registers in TCSR.

8.2
CVE-2024-45552

Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesn`t

6.2
CVE-2024-45551

Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verifi

7.7
CVE-2024-45549

Information disclosure while creating MQ channels.

6.6
CVE-2024-45544

Memory corruption while processing IOCTL calls to add route entry in the HW.

6.6
CVE-2024-45543

Memory corruption while accessing MSM channel map and mixer functions.

6.6
CVE-2024-45540

Memory corruption while invoking IOCTL map buffer request from userspace.

7.8
CVE-2024-43067

Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shar

7.8
CVE-2024-43066

Memory corruption while handling file descriptor during listener registration/de-registration.

7.1
CVE-2024-43065

Cryptographic issues while generating an asymmetric key pair for RKP use cases.

7.8
CVE-2024-43058

Memory corruption while processing IOCTL calls.

5.5
CVE-2024-43046

There may be information disclosure during memory re-allocation in TZ Secure OS.

7.5
CVE-2024-33058

Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP.

7.8
CVE-2025-21424

Memory corruption while calling the NPU driver APIs concurrently.

7.8
CVE-2024-53034

Memory corruption occurs during an Escape call if an invalid Kernel Mode CPU event and sync object handle are passed wit

7.8
CVE-2024-53033

Memory corruption while doing Escape call when user provides valid kernel address in the place of valid user buffer addr

7.8
CVE-2024-53032

Memory corruption may occur in keyboard virtual device due to guest VM interaction.

7.8
CVE-2024-53031

Memory corruption while reading a type value from a buffer controlled by the Guest Virtual Machine.

7.8
CVE-2024-53030

Memory corruption while processing input message passed from FE driver.

7.8
CVE-2024-53029

Memory corruption while reading a value from a buffer controlled by the Guest Virtual Machine.

7.8
CVE-2024-53028

Memory corruption may occur while processing message from frontend during allocation.

7.5
CVE-2024-53027

Transient DOS may occur while processing the country IE.

5.5
CVE-2024-53025

Transient DOS can occur while processing UCI command.

7.8
CVE-2024-53024

Memory corruption in display driver while detaching a device.

7.8
CVE-2024-53023

Memory corruption may occur while accessing a variable during extended back to back tests.

7.8
CVE-2024-53022

Memory corruption may occur during communication between primary and guest VM.

7.8
CVE-2024-53014

Memory corruption may occur while validating ports and channels in Audio driver.

7.8
CVE-2024-53012

Memory corruption may occur due to improper input validation in clock device.

7.9
CVE-2024-53011

Information disclosure may occur due to improper permission and access controls to Video Analytics engine.

7.8
CVE-2024-49836

Memory corruption may occur during the synchronization of the camera`s frame processing pipeline.

7.8
CVE-2024-45580

Memory corruption while handling multuple IOCTL calls from userspace for remote invocation.

7.8
CVE-2024-43062

Memory corruption caused by missing locks and checks on the DMA fence and improper synchronization.

7.8
CVE-2024-43061

Memory corruption during voice activation, when sound model parameters are loaded from HLOS, and the received sound mode

7.8
CVE-2024-43060

Memory corruption during voice activation, when sound model parameters are loaded from HLOS to ADSP.

7.8
CVE-2024-43059

Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.

7.8
CVE-2024-43057

Memory corruption while processing command in Glink linux.

5.5
CVE-2024-43056

Transient DOS during hypervisor virtual I/O operation in a virtual machine.

7.8
CVE-2024-43055

Memory corruption while processing camera use case IOCTL call.

5.5
CVE-2024-43051

Information disclosure while deriving keys for a session for any Widevine use case.

5.4
CVE-2024-38426

While processing the authentication message in UE, improper authentication may lead to information disclosure.

7.8
CVE-2024-49843

Memory corruption while processing IOCTL from user space to handle GPU AHB bus error.

7.8
CVE-2024-49840

Memory corruption while Invoking IOCTL calls from user-space to validate FIPS encryption or decryption functionality.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started