Qualcomm Inc Snapdragon vulnerabilities

908 known vulnerabilities affecting qualcomm_inc/snapdragon.

Total CVEs
908
CISA KEV
8
actively exploited
Public exploits
0
Exploited in wild
4
Severity breakdown
CRITICAL51HIGH715MEDIUM142

Vulnerabilities

Page 16 of 46
CVE-2024-49832HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+23 more2025-02-03
CVE-2024-49832 [HIGH] CWE-129 CVE-2024-49832: Memory corruption in Camera due to unusually high number of nodes passed to AXI port. Memory corruption in Camera due to unusually high number of nodes passed to AXI port.
nvd
CVE-2024-45571HIGHCVSS 7.8vAR8035vCSR8811+148 more2025-02-03
CVE-2024-45571 [HIGH] CWE-416 CVE-2024-45571: Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command f Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.
nvd
CVE-2024-38420HIGHCVSS 7.8vAQT1000vAR8035+158 more2025-02-03
CVE-2024-38420 [HIGH] CWE-20 CVE-2024-38420: Memory corruption while configuring a Hypervisor based input virtual device. Memory corruption while configuring a Hypervisor based input virtual device.
nvd
CVE-2024-49837HIGHCVSS 7.8vQAM8255PvQAM8295P+24 more2025-02-03
CVE-2024-49837 [HIGH] CWE-129 CVE-2024-49837: Memory corruption while reading CPU state data during guest VM suspend. Memory corruption while reading CPU state data during guest VM suspend.
nvd
CVE-2024-38418HIGHCVSS 7.0vC-V2X 9150vCSRB31024+60 more2025-02-03
CVE-2024-38418 [HIGH] CWE-367 CVE-2024-38418: Memory corruption while parsing the memory map info in IOCTL calls. Memory corruption while parsing the memory map info in IOCTL calls.
nvd
CVE-2024-38404HIGHCVSS 7.5vAR8035vFastConnect 7800+38 more2025-02-03
CVE-2024-38404 [HIGH] CWE-126 CVE-2024-38404: Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.
nvd
CVE-2024-49843HIGHCVSS 7.8vFastConnect 6200vFastConnect 7800+50 more2025-02-03
CVE-2024-49843 [HIGH] CWE-129 CVE-2024-49843: Memory corruption while processing IOCTL from user space to handle GPU AHB bus error. Memory corruption while processing IOCTL from user space to handle GPU AHB bus error.
nvd
CVE-2024-38411HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+16 more2025-02-03
CVE-2024-38411 [HIGH] CWE-416 CVE-2024-38411: Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls. Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls.
nvd
CVE-2024-49838HIGHCVSS 7.5vAR8035vFastConnect 6200+168 more2025-02-03
CVE-2024-49838 [HIGH] CWE-126 CVE-2024-49838: Information disclosure while parsing the OCI IE with invalid length. Information disclosure while parsing the OCI IE with invalid length.
nvd
CVE-2024-45560HIGHCVSS 7.0vAQT1000vFastConnect 6200+35 more2025-02-03
CVE-2024-45560 [HIGH] CWE-367 CVE-2024-45560: Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer. Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer.
nvd
CVE-2024-49833HIGHCVSS 7.8vFastConnect 6700vFastConnect 6900+79 more2025-02-03
CVE-2024-49833 [HIGH] CWE-129 CVE-2024-49833: Memory corruption can occur in the camera when an invalid CID is used. Memory corruption can occur in the camera when an invalid CID is used.
nvd
CVE-2024-45584HIGHCVSS 7.8vAR8035vFastConnect 6200+122 more2025-02-03
CVE-2024-45584 [HIGH] CWE-822 CVE-2024-45584: Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspa Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace.
nvd
CVE-2024-45561HIGHCVSS 7.8vAQT1000vFastConnect 6200+30 more2025-02-03
CVE-2024-45561 [HIGH] CWE-126 CVE-2024-45561: Memory corruption while handling IOCTL call from user-space to set latency level. Memory corruption while handling IOCTL call from user-space to set latency level.
nvd
CVE-2024-38416MEDIUMCVSS 6.1vAR8035vC-V2X 9150+70 more2025-02-03
CVE-2024-38416 [MEDIUM] CWE-126 Buffer Over-read in Audio Buffer Over-read in Audio Information disclosure during audio playback.
cvelistv5
CVE-2024-38417MEDIUMCVSS 5.5vAR8035vC-V2X 9150+54 more2025-02-03
CVE-2024-38417 [MEDIUM] CWE-126 CVE-2024-38417: Information disclosure while processing IO control commands. Information disclosure while processing IO control commands.
nvd
CVE-2024-38414MEDIUMCVSS 5.5vFastConnect 6900vFastConnect 7800+27 more2025-02-03
CVE-2024-38414 [MEDIUM] CWE-126 CVE-2024-38414: Information disclosure while processing information on firmware image during core initialization. Information disclosure while processing information on firmware image during core initialization.
nvd
CVE-2024-38413MEDIUMCVSS 6.6vFastConnect 7800vSnapdragon 8 Gen 3 Mobile Platform+5 more2025-02-03
CVE-2024-38413 [MEDIUM] CWE-20 Improper Input Validation in Computer Vision Improper Input Validation in Computer Vision Memory corruption while processing frame packets.
cvelistv5
CVE-2024-45555HIGHCVSS 7.8vMSM8996AUvQAM8255P+39 more2025-01-06
CVE-2024-45555 [HIGH] CWE-787 CVE-2024-45555: Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verific Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.
nvd
CVE-2024-33041HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+33 more2025-01-06
CVE-2024-33041 [HIGH] CWE-823 CVE-2024-33041: Memory corruption when input parameter validation for number of fences is missing for fence frame IO Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,
nvd
CVE-2024-45548HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+8 more2025-01-06
CVE-2024-45548 [HIGH] CWE-126 CVE-2024-45548: Memory corruption while processing FIPS encryption or decryption validation functionality IOCTL call Memory corruption while processing FIPS encryption or decryption validation functionality IOCTL call.
nvd