Qualcomm Inc Snapdragon vulnerabilities
962 known vulnerabilities affecting qualcomm_inc/snapdragon.
Total CVEs
962
CISA KEV
8
actively exploited
Public exploits
2
Exploited in wild
9
Severity breakdown
CRITICAL53HIGH752MEDIUM157
Vulnerabilities
Page 28 of 49
CVE-2025-21452P3HIGHCVSS 7.5v315 5G IoT ModemvAR8035+78 more2025-08-06
CVE-2025-21452 [HIGH] CWE-617 CVE-2025-21452: Transient DOS while processing a random-access response (RAR) with an invalid PDU length on LTE netw
Transient DOS while processing a random-access response (RAR) with an invalid PDU length on LTE network.
nvd
CVE-2026-24084P3HIGHCVSS 7.5v5G Fixed Wireless Access PlatformvAQT1000+126 more2026-08-04
CVE-2026-24084 [HIGH] CWE-1294 CVE-2026-24084: Weak configuration when UE does not verify the consistency of its additional security capabilities w
Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed capabilities.
nvd
CVE-2025-59617P3HIGHCVSS 7.3vFastConnect 6700vFastConnect 6900+46 more2026-07-06
CVE-2025-59617 [HIGH] CWE-416 CVE-2025-59617: Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input.
Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input.
nvd
CVE-2023-21643P3HIGHCVSS 7.8vAPQ8064AUvAPQ8096AU+22 more2023-08-08
CVE-2023-21643 [HIGH] CWE-822 CVE-2023-21643: Memory corruption due to untrusted pointer dereference in automotive during system call.
Memory corruption due to untrusted pointer dereference in automotive during system call.
nvd
CVE-2023-21666P3HIGHCVSS 7.8v315 5G IoT Modemv9206 LTE Modem+177 more2023-05-02
CVE-2023-21666 [HIGH] CWE-401 CVE-2023-21666: Memory Corruption in Graphics while accessing a buffer allocated through the graphics pool.
Memory Corruption in Graphics while accessing a buffer allocated through the graphics pool.
nvd
CVE-2022-33219P3HIGHCVSS 7.8vAPQ8064AUvAPQ8096AU+22 more2023-01-09
CVE-2022-33219 [HIGH] CWE-190 CVE-2022-33219: Memory corruption in Automotive due to integer overflow to buffer overflow while registering a new l
Memory corruption in Automotive due to integer overflow to buffer overflow while registering a new listener with shared buffer.
nvd
CVE-2022-40539P3HIGHCVSS 7.8vQAM8295PvQCA6574AU+23 more2023-03-10
CVE-2022-40539 [HIGH] CWE-284 CVE-2022-40539: Memory corruption in Automotive Android OS due to improper validation of array index.
Memory corruption in Automotive Android OS due to improper validation of array index.
nvd
CVE-2022-33218P3HIGHCVSS 7.8vAPQ8064AUvAPQ8096AU+22 more2023-01-09
CVE-2022-33218 [HIGH] CWE-787 CVE-2022-33218: Memory corruption in Automotive due to improper input validation.
Memory corruption in Automotive due to improper input validation.
nvd
CVE-2022-40530P3HIGHCVSS 7.8vAQT1000vAR8031+187 more2023-03-10
CVE-2022-40530 [HIGH] CWE-680 CVE-2022-40530: Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization p
Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.
nvd
CVE-2022-25705P3HIGHCVSS 7.8vAPQ8009vAPQ8009W+199 more2023-03-10
CVE-2022-25705 [HIGH] CWE-680 CVE-2022-25705: Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response
Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response
nvd
CVE-2022-25709P3HIGHCVSS 7.8vAR8035vQCA6174A+66 more2023-03-10
CVE-2022-25709 [HIGH] CWE-823 CVE-2022-25709: Memory corruption in modem due to use of out of range pointer offset while processing qmi msg
Memory corruption in modem due to use of out of range pointer offset while processing qmi msg
nvd
CVE-2022-33278P3HIGHCVSS 7.8vAQT1000vAR8035+121 more2023-03-10
CVE-2022-33278 [HIGH] CWE-120 CVE-2022-33278: Memory corruption due to buffer copy without checking the size of input in HLOS when input message s
Memory corruption due to buffer copy without checking the size of input in HLOS when input message size is larger than the buffer capacity.
nvd
CVE-2023-28577P3HIGHCVSS 7.8vFastConnect 6800vFastConnect 6900+29 more2023-08-08
CVE-2023-28577 [HIGH] CWE-416 CVE-2023-28577: In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being use
In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEASE_BUF to unmap the kernel va which cause UAF of the kernel address.
nvd
CVE-2022-33225P3HIGHCVSS 7.8vAPQ8096AUvMDM9628+27 more2023-02-12
CVE-2022-33225 [HIGH] CWE-416 CVE-2022-33225: Memory corruption due to use after free in trusted application environment.
Memory corruption due to use after free in trusted application environment.
nvd
CVE-2022-33274P3HIGHCVSS 7.8vQAM8295PvQCA6574AU+9 more2023-01-09
CVE-2022-33274 [HIGH] CWE-129 CVE-2022-33274: Memory corruption in android core due to improper validation of array index while returning feature
Memory corruption in android core due to improper validation of array index while returning feature ids after license authentication.
nvd
CVE-2023-28583P3HIGHCVSS 7.8vAQT1000vFastConnect 6200+28 more2024-01-02
CVE-2023-28583 [HIGH] CWE-415 CVE-2023-28583: Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr da
Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 address.
nvd
CVE-2017-15832P3HIGHCVSS 7.8vMDM9206vMDM9607+3 more2024-11-26
CVE-2017-15832 [HIGH] CWE-20 CVE-2017-15832: Buffer overwrite in the WLAN host driver by leveraging a compromised WLAN FW
Buffer overwrite in the WLAN host driver by leveraging a compromised WLAN FW
nvd
CVE-2018-5852P3HIGHCVSS 7.8vMDM9206vMDM9607+16 more2024-11-26
CVE-2018-5852 [HIGH] CWE-126 CVE-2018-5852: An unsigned integer underflow vulnerability in IPA driver result into a buffer over-read while readi
An unsigned integer underflow vulnerability in IPA driver result into a buffer over-read while reading NAT entry using debugfs command 'cat /sys/kernel/debug/ipa/ip4_nat'
nvd
CVE-2017-9711P3HIGHCVSS 7.8vMDM9206vMDM9607+16 more2024-11-22
CVE-2017-9711 [HIGH] CWE-264 CVE-2017-9711: Certain unprivileged processes are able to perform IOCTL calls.
Certain unprivileged processes are able to perform IOCTL calls.
nvd
CVE-2022-33275P3HIGHCVSS 7.8v315 5G IoT ModemvAQT1000+250 more2023-09-05
CVE-2022-33275 [HIGH] CWE-129 CVE-2022-33275: Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is
Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.
nvd