Qualcomm Inc Snapdragon vulnerabilities
908 known vulnerabilities affecting qualcomm_inc/snapdragon.
Total CVEs
908
CISA KEV
8
actively exploited
Public exploits
0
Exploited in wild
4
Severity breakdown
CRITICAL51HIGH715MEDIUM142
Vulnerabilities
Page 17 of 46
CVE-2024-33055HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+37 more2025-01-06
CVE-2024-33055 [HIGH] CWE-416 CVE-2024-33055: Memory corruption while invoking IOCTL calls to unmap the DMA buffers.
Memory corruption while invoking IOCTL calls to unmap the DMA buffers.
nvd
CVE-2024-33059HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+14 more2025-01-06
CVE-2024-33059 [HIGH] CWE-416 CVE-2024-33059: Memory corruption while processing frame command IOCTL calls.
Memory corruption while processing frame command IOCTL calls.
nvd
CVE-2024-45553HIGHCVSS 7.8vAR8035vFastConnect 6200+127 more2025-01-06
CVE-2024-45553 [HIGH] CWE-416 CVE-2024-45553: Memory corruption can occur when process-specific maps are added to the global list. If a map is rem
Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global list while another thread is using it for a process-specific task, issues may arise.
nvd
CVE-2024-21464HIGHCVSS 7.8vFastConnect 6700vFastConnect 6900+19 more2025-01-06
CVE-2024-21464 [HIGH] CWE-120 CVE-2024-21464: Memory corruption while processing IPA statistics, when there are no active clients registered.
Memory corruption while processing IPA statistics, when there are no active clients registered.
nvd
CVE-2024-45546HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+8 more2025-01-06
CVE-2024-45546 [HIGH] CWE-126 CVE-2024-45546: Memory corruption while processing FIPS encryption or decryption IOCTL call invoked from user-space.
Memory corruption while processing FIPS encryption or decryption IOCTL call invoked from user-space.
nvd
CVE-2024-45547HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+8 more2025-01-06
CVE-2024-45547 [HIGH] CWE-120 CVE-2024-45547: Memory corruption while processing IOCTL call invoked from user-space to verify non extension FIPS e
Memory corruption while processing IOCTL call invoked from user-space to verify non extension FIPS encryption and decryption functionality.
nvd
CVE-2024-45558HIGHCVSS 7.5vAR8035vCSR8811+181 more2025-01-06
CVE-2024-45558 [HIGH] CWE-126 CVE-2024-45558: Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN e
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
nvd
CVE-2024-45542HIGHCVSS 7.8vAQT1000vFastConnect 6200+49 more2025-01-06
CVE-2024-45542 [HIGH] CWE-121 CVE-2024-45542: Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
nvd
CVE-2024-45550HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+6 more2025-01-06
CVE-2024-45550 [HIGH] CWE-129 CVE-2024-45550: Memory corruption occurs when invoking any IOCTL-calling application that executes all MCDM driver I
Memory corruption occurs when invoking any IOCTL-calling application that executes all MCDM driver IOCTL calls.
nvd
CVE-2024-45541HIGHCVSS 7.8vAQT1000vFastConnect 6200+49 more2025-01-06
CVE-2024-45541 [HIGH] CWE-120 CVE-2024-45541: Memory corruption when IOCTL call is invoked from user-space to read board data.
Memory corruption when IOCTL call is invoked from user-space to read board data.
nvd
CVE-2024-33067MEDIUMCVSS 5.5vAR8035vC-V2X 9150+75 more2025-01-06
CVE-2024-33067 [MEDIUM] CWE-126 CVE-2024-33067: Information disclosure while invoking callback function of sound model driver from ADSP for every va
Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
nvd
CVE-2024-43064MEDIUMCVSS 4.7vQAM8255PvQAM8295P+28 more2025-01-06
CVE-2024-43064 [MEDIUM] CWE-264 CVE-2024-43064: Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the
Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers through SMMU.
nvd
CVE-2024-43063MEDIUMCVSS 5.5vQAM8255PvQAM8295P+15 more2025-01-06
CVE-2024-43063 [MEDIUM] CWE-126 CVE-2024-43063: information disclosure while invoking the mailbox read API.
information disclosure while invoking the mailbox read API.
nvd
CVE-2024-45559MEDIUMCVSS 5.5vQAM8255PvQAM8295P+21 more2025-01-06
CVE-2024-45559 [MEDIUM] CWE-126 CVE-2024-45559: Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.
Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.
nvd
CVE-2024-33061MEDIUMCVSS 5.5vQCS8550vSW5100+7 more2025-01-06
CVE-2024-33061 [MEDIUM] CWE-126 CVE-2024-33061: Information disclosure while processing IOCTL call made for releasing a trusted VM process release o
Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process.
nvd
CVE-2024-23366MEDIUMCVSS 5.5vQAM8255PvQAM8295P+15 more2025-01-06
CVE-2024-23366 [MEDIUM] CWE-126 CVE-2024-23366: Information Disclosure while invoking the mailbox write API when message received from user is large
Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size.
nvd
CVE-2024-33040HIGHCVSS 7.0vFastConnect 6800vFastConnect 6900+28 more2024-12-02
CVE-2024-33040 [HIGH] CWE-416 CVE-2024-33040: Memory corruption while invoking redundant release command to release one buffer from user space as
Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access.
nvd
CVE-2024-43048HIGHCVSS 7.8vFastConnect 6200vFastConnect 6900+50 more2024-12-02
CVE-2024-43048 [HIGH] CWE-121 CVE-2024-43048: Memory corruption when invalid input is passed to invoke GPU Headroom API call.
Memory corruption when invalid input is passed to invoke GPU Headroom API call.
nvd
CVE-2024-33063HIGHCVSS 7.5vAR8035vFastConnect 6900+122 more2024-12-02
CVE-2024-33063 [HIGH] CWE-190 CVE-2024-33063: Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater tha
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside which this element is present.
nvd
CVE-2024-43050HIGHCVSS 7.8vAQT1000vFastConnect 6200+54 more2024-12-02
CVE-2024-43050 [HIGH] CWE-121 CVE-2024-43050: Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WL
Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.
nvd