Qualcomm Inc Snapdragon vulnerabilities

908 known vulnerabilities affecting qualcomm_inc/snapdragon.

Total CVEs
908
CISA KEV
8
actively exploited
Public exploits
0
Exploited in wild
4
Severity breakdown
CRITICAL51HIGH715MEDIUM142

Vulnerabilities

Page 20 of 46
CVE-2024-33031MEDIUMCVSS 6.7vAR8035vFastConnect 7800+14 more2024-11-04
CVE-2024-33031 [MEDIUM] CWE-20 CVE-2024-33031: Memory corruption while processing the update SIM PB records request. Memory corruption while processing the update SIM PB records request.
nvd
CVE-2024-23377MEDIUMCVSS 6.7vFastConnect 6900vFastConnect 7800+37 more2024-11-04
CVE-2024-23377 [MEDIUM] CWE-823 CVE-2024-23377: Memory corruption while invoking IOCTL command from user-space, when a user modifies the original pa Memory corruption while invoking IOCTL command from user-space, when a user modifies the original packet size of the command after system properties have been already sent to the EVA driver.
nvd
CVE-2024-33030MEDIUMCVSS 6.7vAR8035vFastConnect 6900+20 more2024-11-04
CVE-2024-33030 [MEDIUM] CWE-120 CVE-2024-33030: Memory corruption while parsing IPC frequency table parameters for LPLH that has size greater than e Memory corruption while parsing IPC frequency table parameters for LPLH that has size greater than expected size.
nvd
CVE-2024-23385MEDIUMCVSS 6.5vAPQ8017vAPQ8037+92 more2024-11-04
CVE-2024-23385 [MEDIUM] CWE-617 CVE-2024-23385: Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE.
nvd
CVE-2024-23386MEDIUMCVSS 6.7vFastConnect 6900vFastConnect 7800+8 more2024-11-04
CVE-2024-23386 [MEDIUM] CWE-20 CVE-2024-23386: memory corruption when WiFi display APIs are invoked with large random inputs. memory corruption when WiFi display APIs are invoked with large random inputs.
nvd
CVE-2024-33066CRITICALCVSS 9.8vCSR8811vImmersive Home 214 Platform+69 more2024-10-07
CVE-2024-33066 [CRITICAL] CWE-20 CVE-2024-33066: Memory corruption while redirecting log file to any file location with any file name. Memory corruption while redirecting log file to any file location with any file name.
nvd
CVE-2024-33065HIGHCVSS 7.8vAQT1000vFastConnect 6200+38 more2024-10-07
CVE-2024-33065 [HIGH] CWE-20 CVE-2024-33065: Memory corruption while taking snapshot when an offset variable is set by camera driver. Memory corruption while taking snapshot when an offset variable is set by camera driver.
nvd
CVE-2024-21455HIGHCVSS 7.8vQAM8295PvQCA6584AU+18 more2024-10-07
CVE-2024-21455 [HIGH] CWE-822 CVE-2024-21455: Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a dri Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a driver.
nvd
CVE-2024-23369HIGHCVSS 7.8vAR8035vFastConnect 6200+116 more2024-10-07
CVE-2024-23369 [HIGH] CWE-119 CVE-2024-23369: Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers. Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers.
nvd
CVE-2024-33049HIGHCVSS 7.5vCSR8811vFastConnect 6700+129 more2024-10-07
CVE-2024-33049 [HIGH] CWE-126 CVE-2024-33049: Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame.
nvd
CVE-2024-38397HIGHCVSS 7.5vAR8035vFastConnect 6700+114 more2024-10-07
CVE-2024-38397 [HIGH] CWE-126 CVE-2024-38397: Transient DOS while parsing probe response and assoc response frame. Transient DOS while parsing probe response and assoc response frame.
nvd
CVE-2024-38399HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+38 more2024-10-07
CVE-2024-38399 [HIGH] CWE-416 CVE-2024-38399: Memory corruption while processing user packets to generate page faults. Memory corruption while processing user packets to generate page faults.
nvd
CVE-2024-33069HIGHCVSS 7.5vFastConnect 6800vFastConnect 6900+42 more2024-10-07
CVE-2024-33069 [HIGH] CWE-416 CVE-2024-33069: Transient DOS when transmission of management frame sent by host is not successful and error status Transient DOS when transmission of management frame sent by host is not successful and error status is received in the host.
nvd
CVE-2024-33071HIGHCVSS 7.5vMDM9628vQCA6564A+3 more2024-10-07
CVE-2024-33071 [HIGH] CWE-126 CVE-2024-33071: Transient DOS while parsing the MBSSID IE from the beacons when IE length is 0. Transient DOS while parsing the MBSSID IE from the beacons when IE length is 0.
nvd
CVE-2024-43047HIGHCVSS 7.8KEVvFastConnect 6700vFastConnect 6800+62 more2024-10-07
CVE-2024-43047 [HIGH] CWE-416 CVE-2024-43047: Memory corruption while maintaining memory maps of HLOS memory. Memory corruption while maintaining memory maps of HLOS memory.
nvd
CVE-2024-33073HIGHCVSS 8.2vAR8035vCSR8811+157 more2024-10-07
CVE-2024-33073 [HIGH] CWE-126 CVE-2024-33073: Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of th Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
nvd
CVE-2024-33064HIGHCVSS 8.2vMDM9628vQCA6564A+3 more2024-10-07
CVE-2024-33064 [HIGH] CWE-126 CVE-2024-33064: Information disclosure while parsing the multiple MBSSID IEs from the beacon. Information disclosure while parsing the multiple MBSSID IEs from the beacon.
nvd
CVE-2024-33070HIGHCVSS 7.5vMDM9628vQCA6564A+3 more2024-10-07
CVE-2024-33070 [HIGH] CWE-126 CVE-2024-33070: Transient DOS while parsing ESP IE from beacon/probe response frame. Transient DOS while parsing ESP IE from beacon/probe response frame.
nvd
CVE-2024-23376MEDIUMCVSS 6.7vFastConnect 6900vFastConnect 7800+19 more2024-10-07
CVE-2024-23376 [MEDIUM] CWE-416 CVE-2024-23376: Memory corruption while sending the persist buffer command packet from the user-space to the kernel Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IOCTL call.
nvd
CVE-2024-23379MEDIUMCVSS 6.7vFastConnect 6900vFastConnect 7800+32 more2024-10-07
CVE-2024-23379 [MEDIUM] CWE-415 CVE-2024-23379: Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurre Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario.
nvd