Qualcomm Inc Snapdragon vulnerabilities

908 known vulnerabilities affecting qualcomm_inc/snapdragon.

Total CVEs
908
CISA KEV
8
actively exploited
Public exploits
0
Exploited in wild
4
Severity breakdown
CRITICAL51HIGH715MEDIUM142

Vulnerabilities

Page 19 of 46
CVE-2017-18307MEDIUMCVSS 5.5vSD 450vSD 625+5 more2024-11-26
CVE-2017-18307 [MEDIUM] CWE-200 CVE-2017-18307: Information disclosure possible while audio playback. Information disclosure possible while audio playback.
nvd
CVE-2017-9711HIGHCVSS 7.8vMDM9206vMDM9607+16 more2024-11-22
CVE-2017-9711 [HIGH] CWE-264 CVE-2017-9711: Certain unprivileged processes are able to perform IOCTL calls. Certain unprivileged processes are able to perform IOCTL calls.
nvd
CVE-2021-30299MEDIUMCVSS 6.7vAPQ8096AUvAR8031+82 more2024-11-22
CVE-2021-30299 [MEDIUM] CWE-20 CVE-2021-30299: Possible out of bound access in audio module due to lack of validation of user provided input. Possible out of bound access in audio module due to lack of validation of user provided input.
nvd
CVE-2024-38408CRITICALCVSS 9.1v315 5G IoT ModemvAQT1000+233 more2024-11-04
CVE-2024-38408 [CRITICAL] CWE-310 CVE-2024-38408: Cryptographic issue when a controller receives an LMP start encryption command under unexpected cond Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
nvd
CVE-2024-38422HIGHCVSS 7.8v315 5G IoT Modemv9206 LTE Modem+266 more2024-11-04
CVE-2024-38422 [HIGH] CWE-680 CVE-2024-38422: Memory corruption while processing voice packet with arbitrary data received from ADSP. Memory corruption while processing voice packet with arbitrary data received from ADSP.
nvd
CVE-2024-38407HIGHCVSS 7.0vAQT1000vFastConnect 6200+42 more2024-11-04
CVE-2024-38407 [HIGH] CWE-367 CVE-2024-38407: Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver. Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver.
nvd
CVE-2024-38423HIGHCVSS 7.8v315 5G IoT Modemv9206 LTE Modem+204 more2024-11-04
CVE-2024-38423 [HIGH] CWE-120 CVE-2024-38423: Memory corruption while processing GPU page table switch. Memory corruption while processing GPU page table switch.
nvd
CVE-2024-38415HIGHCVSS 7.8vAR8035vCSRA6620+176 more2024-11-04
CVE-2024-38415 [HIGH] CWE-416 CVE-2024-38415: Memory corruption while handling session errors from firmware. Memory corruption while handling session errors from firmware.
nvd
CVE-2024-33033HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+26 more2024-11-04
CVE-2024-33033 [HIGH] CWE-416 CVE-2024-33033: Memory corruption while processing IOCTL calls to unmap the buffers. Memory corruption while processing IOCTL calls to unmap the buffers.
nvd
CVE-2024-38419HIGHCVSS 7.8vAR8035vCSRA6620+146 more2024-11-04
CVE-2024-38419 [HIGH] CWE-416 CVE-2024-38419: Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node. Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.
nvd
CVE-2024-38421HIGHCVSS 7.8vFastConnect 6200vFastConnect 7800+75 more2024-11-04
CVE-2024-38421 [HIGH] CWE-416 Use After Free in Graphics Linux Use After Free in Graphics Linux Memory corruption while processing GPU commands.
cvelistv5
CVE-2024-38406HIGHCVSS 7.0vAQT1000vFastConnect 6200+42 more2024-11-04
CVE-2024-38406 [HIGH] CWE-367 CVE-2024-38406: Memory corruption while handling IOCTL calls in JPEG Encoder driver. Memory corruption while handling IOCTL calls in JPEG Encoder driver.
nvd
CVE-2024-38424HIGHCVSS 7.8vAR8035vFastConnect 6200+117 more2024-11-04
CVE-2024-38424 [HIGH] CWE-416 CVE-2024-38424: Memory corruption during GNSS HAL process initialization. Memory corruption during GNSS HAL process initialization.
nvd
CVE-2024-38410HIGHCVSS 7.8vFastConnect 6700vFastConnect 6900+23 more2024-11-04
CVE-2024-38410 [HIGH] CWE-121 CVE-2024-38410: Memory corruption while IOCLT is called when device is in invalid state and the WMI command buffer m Memory corruption while IOCLT is called when device is in invalid state and the WMI command buffer may be freed twice.
nvd
CVE-2024-38409HIGHCVSS 7.8vFastConnect 6700vFastConnect 6900+23 more2024-11-04
CVE-2024-38409 [HIGH] CWE-120 CVE-2024-38409: Memory corruption while station LL statistic handling. Memory corruption while station LL statistic handling.
nvd
CVE-2024-33032MEDIUMCVSS 6.7vC-V2X 9150vFastConnect 6200+67 more2024-11-04
CVE-2024-33032 [MEDIUM] CWE-129 CVE-2024-33032: Memory corruption when the user application modifies the same shared memory asynchronously when kern Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it.
nvd
CVE-2024-38403MEDIUMCVSS 6.5vAR8035vFastConnect 6900+76 more2024-11-04
CVE-2024-38403 [MEDIUM] CWE-126 CVE-2024-38403: Transient DOS while parsing BTM ML IE when per STA profile is not included. Transient DOS while parsing BTM ML IE when per STA profile is not included.
nvd
CVE-2024-33068MEDIUMCVSS 6.5vAR8035vFastConnect 6900+120 more2024-11-04
CVE-2024-33068 [MEDIUM] CWE-416 CVE-2024-33068: Transient DOS while parsing fragments of MBSSID IE from beacon frame. Transient DOS while parsing fragments of MBSSID IE from beacon frame.
nvd
CVE-2024-33029MEDIUMCVSS 6.7vQCA6584AUvQCA6698AQ+1 more2024-11-04
CVE-2024-33029 [MEDIUM] CWE-416 CVE-2024-33029: Memory corruption while handling the PDR in driver for getting the remote heap maps. Memory corruption while handling the PDR in driver for getting the remote heap maps.
nvd
CVE-2024-38405MEDIUMCVSS 6.5vAR8035vFastConnect 6700+97 more2024-11-04
CVE-2024-38405 [MEDIUM] CWE-126 CVE-2024-38405: Transient DOS while processing the CU information from RNR IE. Transient DOS while processing the CU information from RNR IE.
nvd