Qualcomm Inc Snapdragon vulnerabilities
908 known vulnerabilities affecting qualcomm_inc/snapdragon.
Total CVEs
908
CISA KEV
8
actively exploited
Public exploits
0
Exploited in wild
4
Severity breakdown
CRITICAL51HIGH715MEDIUM142
Vulnerabilities
Page 22 of 46
CVE-2024-33052HIGHCVSS 7.8vAPQ8017vAQT1000+200 more2024-09-02
CVE-2024-33052 [HIGH] CWE-120 CVE-2024-33052: Memory corruption when user provides data for FM HCI command control operations.
Memory corruption when user provides data for FM HCI command control operations.
nvd
CVE-2024-33050HIGHCVSS 7.5vAR8035vAR9380+255 more2024-09-02
CVE-2024-33050 [HIGH] CWE-126 CVE-2024-33050: Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length che
Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.
nvd
CVE-2024-33045HIGHCVSS 7.8vAR8035vCSRA6620+178 more2024-09-02
CVE-2024-33045 [HIGH] CWE-562 CVE-2024-33045: Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
nvd
CVE-2024-23359HIGHCVSS 8.2v315 5G IoT Modemv9205 LTE Modem+155 more2024-09-02
CVE-2024-23359 [HIGH] CWE-126 CVE-2024-23359: Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received
Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network.
nvd
CVE-2024-33016MEDIUMCVSS 6.8v315 5G IoT Modemv9205 LTE Modem+326 more2024-09-02
CVE-2024-33016 [MEDIUM] CWE-119 CVE-2024-33016: memory corruption when an invalid firehose patch command is invoked.
memory corruption when an invalid firehose patch command is invoked.
nvd
CVE-2024-33043MEDIUMCVSS 5.5vAPQ8017vAQT1000+200 more2024-09-02
CVE-2024-33043 [MEDIUM] CWE-126 CVE-2024-33043: Transient DOS while handling PS event when Program Service name length offset value is set to 255.
Transient DOS while handling PS event when Program Service name length offset value is set to 255.
nvd
CVE-2024-23353HIGHCVSS 7.5v315 5G IoT Modemv9205 LTE Modem+242 more2024-08-05
CVE-2024-23353 [HIGH] CWE-126 CVE-2024-23353: Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
nvd
CVE-2024-33019HIGHCVSS 7.5vAR8035vCSR8811+147 more2024-08-05
CVE-2024-33019 [HIGH] CWE-126 CVE-2024-33019: Transient DOS while parsing the received TID-to-link mapping action frame.
Transient DOS while parsing the received TID-to-link mapping action frame.
nvd
CVE-2024-21467HIGHCVSS 7.5vCSR8811vFastConnect 6800+127 more2024-08-05
CVE-2024-21467 [HIGH] CWE-126 CVE-2024-21467: Information disclosure while handling beacon probe frame during scan entry generation in client side
Information disclosure while handling beacon probe frame during scan entry generation in client side.
nvd
CVE-2024-33023HIGHCVSS 7.8vAR8035vCSRA6620+155 more2024-08-05
CVE-2024-33023 [HIGH] CWE-416 CVE-2024-33023: Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timel
Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timeline events.
nvd
CVE-2024-33028HIGHCVSS 7.8vAR8035vCSRA6620+136 more2024-08-05
CVE-2024-33028 [HIGH] CWE-416 CVE-2024-33028: Memory corruption as fence object may still be accessed in timeline destruct after isync fence is re
Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.
nvd
CVE-2024-33011HIGHCVSS 7.5vAR8035vAR9380+247 more2024-08-05
CVE-2024-33011 [HIGH] CWE-126 CVE-2024-33011: Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.
Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.
nvd
CVE-2024-23381HIGHCVSS 7.8vFastConnect 6200vFastConnect 6700+70 more2024-08-05
CVE-2024-23381 [HIGH] CWE-416 CVE-2024-23381: Memory corruption when memory mapped in a VBO is not unmapped by the GPU SMMU.
Memory corruption when memory mapped in a VBO is not unmapped by the GPU SMMU.
nvd
CVE-2024-33012HIGHCVSS 7.5vAR8035vAR9380+247 more2024-08-05
CVE-2024-33012 [HIGH] CWE-126 CVE-2024-33012: Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero
Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon.
nvd
CVE-2024-21481HIGHCVSS 8.4vAQT1000vAR8035+158 more2024-08-05
CVE-2024-21481 [HIGH] CWE-119 CVE-2024-21481: Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager.
Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager.
nvd
CVE-2024-33027HIGHCVSS 7.8v315 5G IoT ModemvAQT1000+87 more2024-08-05
CVE-2024-33027 [HIGH] CWE-284 CVE-2024-33027: Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR
Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table.
nvd
CVE-2024-23382HIGHCVSS 7.8vFastConnect 6200vFastConnect 6700+102 more2024-08-05
CVE-2024-23382 [HIGH] CWE-416 CVE-2024-23382: Memory corruption while processing graphics kernel driver request to create DMA fence.
Memory corruption while processing graphics kernel driver request to create DMA fence.
nvd
CVE-2024-23356HIGHCVSS 7.8vAQT1000vAR8031+207 more2024-08-05
CVE-2024-23356 [HIGH] CWE-119 CVE-2024-23356: Memory corruption during session sign renewal request calls in HLOS.
Memory corruption during session sign renewal request calls in HLOS.
nvd
CVE-2024-33034HIGHCVSS 7.8vFastConnect 6200vFastConnect 6700+103 more2024-08-05
CVE-2024-33034 [HIGH] CWE-416 CVE-2024-33034: Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the
Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaiming of memory buffers are performed at the same time.
nvd
CVE-2024-33015HIGHCVSS 7.5vAR8035vCSR8811+193 more2024-08-05
CVE-2024-33015 [HIGH] CWE-126 CVE-2024-33015: Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the las
Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report.
nvd