Qualcomm Inc Snapdragon vulnerabilities

908 known vulnerabilities affecting qualcomm_inc/snapdragon.

Total CVEs
908
CISA KEV
8
actively exploited
Public exploits
0
Exploited in wild
4
Severity breakdown
CRITICAL51HIGH715MEDIUM142

Vulnerabilities

Page 26 of 46
CVE-2024-21476HIGHCVSS 7.8vAQT1000vAR8035+46 more2024-05-06
CVE-2024-21476 [HIGH] CWE-20 CVE-2024-21476: Memory corruption when the channel ID passed by user is not validated and further used. Memory corruption when the channel ID passed by user is not validated and further used.
nvd
CVE-2023-43527MEDIUMCVSS 5.5vFastConnect 6800vFastConnect 6900+52 more2024-05-06
CVE-2023-43527 [MEDIUM] CWE-126 CVE-2023-43527: Information disclosure while parsing dts header atom in Video. Information disclosure while parsing dts header atom in Video.
nvd
CVE-2023-43528MEDIUMCVSS 5.5vAR8035vC-V2X 9150+89 more2024-05-06
CVE-2023-43528 [MEDIUM] CWE-126 CVE-2023-43528: Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manag Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.
nvd
CVE-2024-21473CRITICALCVSS 9.8vAR8035vAR9380+125 more2024-04-01
CVE-2024-21473 [CRITICAL] CWE-20 CVE-2024-21473: Memory corruption while redirecting log file to any file location with any file name. Memory corruption while redirecting log file to any file location with any file name.
nvd
CVE-2024-21463CRITICALCVSS 9.8vAR8035vFastConnect 6200+107 more2024-04-01
CVE-2024-21463 [CRITICAL] CWE-120 CVE-2024-21463: Memory corruption while processing Codec2 during v13k decoder pitch synthesis. Memory corruption while processing Codec2 during v13k decoder pitch synthesis.
nvd
CVE-2023-28547HIGHCVSS 7.8v315 5G IoT Modemv9205 LTE Modem+299 more2024-04-01
CVE-2023-28547 [HIGH] CWE-120 CVE-2023-28547: Memory corruption in SPS Application while requesting for public key in sorter TA. Memory corruption in SPS Application while requesting for public key in sorter TA.
nvd
CVE-2024-21468HIGHCVSS 7.8v315 5G IoT Modemv9206 LTE Modem+227 more2024-04-01
CVE-2024-21468 [HIGH] CWE-416 CVE-2024-21468: Memory corruption when there is failed unmap operation in GPU. Memory corruption when there is failed unmap operation in GPU.
nvd
CVE-2023-33115HIGHCVSS 7.8vAQT1000vAR8035+165 more2024-04-01
CVE-2023-33115 [HIGH] CWE-126 CVE-2023-33115: Memory corruption while processing buffer initialization, when trusted report for certain report typ Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.
nvd
CVE-2023-33023HIGHCVSS 7.8v315 5G IoT ModemvAPQ8017+285 more2024-04-01
CVE-2023-33023 [HIGH] CWE-120 CVE-2023-33023: Memory corruption while processing finish_sign command to pass a rsp buffer. Memory corruption while processing finish_sign command to pass a rsp buffer.
nvd
CVE-2023-33100HIGHCVSS 7.5vAR8035vFastConnect 6700+48 more2024-04-01
CVE-2023-33100 [HIGH] CWE-20 CVE-2023-33100: Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP s Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification.
nvd
CVE-2023-33101HIGHCVSS 7.5v315 5G IoT ModemvAR8035+101 more2024-04-01
CVE-2023-33101 [HIGH] CWE-704 CVE-2023-33101: Transient DOS while processing DL NAS TRANSPORT message with payload length 0. Transient DOS while processing DL NAS TRANSPORT message with payload length 0.
nvd
CVE-2023-43515HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+4 more2024-04-01
CVE-2023-43515 [HIGH] CWE-120 CVE-2023-43515: Memory corruption in HLOS while running kernel address sanitizers (syzkaller) on tmecom with DEBUG_F Memory corruption in HLOS while running kernel address sanitizers (syzkaller) on tmecom with DEBUG_FS enabled.
nvd
CVE-2024-21453HIGHCVSS 7.5vC-V2X 9150vQCS410+11 more2024-04-01
CVE-2024-21453 [HIGH] CWE-20 CVE-2024-21453: Transient DOS while decoding message of size that exceeds the available system memory. Transient DOS while decoding message of size that exceeds the available system memory.
nvd
CVE-2024-21452HIGHCVSS 7.5vC-V2X 9150vQCA6584AU+4 more2024-04-01
CVE-2024-21452 [HIGH] CWE-20 CVE-2024-21452: Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions. Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions.
nvd
CVE-2024-21470HIGHCVSS 7.8vAQT1000vFastConnect 6200+31 more2024-04-01
CVE-2024-21470 [HIGH] CWE-680 CVE-2024-21470: Memory corruption while allocating memory for graphics. Memory corruption while allocating memory for graphics.
nvd
CVE-2023-33099HIGHCVSS 7.5v315 5G IoT ModemvAR8035+101 more2024-04-01
CVE-2023-33099 [HIGH] CWE-20 CVE-2023-33099: Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR.
nvd
CVE-2024-21454HIGHCVSS 7.5vC-V2X 9150vSnapdragon Auto 5G Modem-RF+1 more2024-04-01
CVE-2024-21454 [HIGH] CWE-680 CVE-2024-21454: Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics. Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics.
nvd
CVE-2024-21472HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+37 more2024-04-01
CVE-2024-21472 [HIGH] CWE-416 CVE-2024-21472: Memory corruption in Kernel while handling GPU operations. Memory corruption in Kernel while handling GPU operations.
nvd
CVE-2023-33111MEDIUMCVSS 5.5vAR8035vC-V2X 9150+84 more2024-04-01
CVE-2023-33111 [MEDIUM] CWE-129 CVE-2023-33111: Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the r Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibration command.
nvd
CVE-2023-43552CRITICALCVSS 9.8vAR8035vCSR8811+147 more2024-03-04
CVE-2023-43552 [CRITICAL] CWE-416 CVE-2023-43552: Memory corruption while processing MBSSID beacon containing several subelement IE. Memory corruption while processing MBSSID beacon containing several subelement IE.
nvd