cbcvebase.

Qualcomm Inc Snapdragon vulnerabilities

962 known vulnerabilities affecting qualcomm_inc/snapdragon.

Total CVEs
962
CISA KEV
8
actively exploited
Public exploits
2
Exploited in wild
9
Severity breakdown
CRITICAL53HIGH752MEDIUM157

Vulnerabilities

Page 29 of 49
CVE-2022-33269P3HIGHCVSS 7.8vAQT1000vAR8035+97 more2023-04-13
CVE-2022-33269 [HIGH] CWE-190 CVE-2022-33269: Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment. Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment.
nvd
CVE-2023-21630P3HIGHCVSS 7.8vFastConnect 6700vFastConnect 6900+38 more2023-04-13
CVE-2023-21630 [HIGH] CWE-191 CVE-2023-21630: Memory Corruption in Multimedia Framework due to integer overflow when synx bind is called along wit Memory Corruption in Multimedia Framework due to integer overflow when synx bind is called along with synx signal.
nvd
CVE-2022-33300P3HIGHCVSS 7.8vQAM8295PvQCA6174A+49 more2023-01-09
CVE-2022-33300 [HIGH] CWE-787 CVE-2022-33300: Memory corruption in Automotive Android OS due to improper input validation. Memory corruption in Automotive Android OS due to improper input validation.
nvd
CVE-2024-53034P3HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+6 more2025-03-03
CVE-2024-53034 [HIGH] CWE-822 CVE-2024-53034: Memory corruption occurs during an Escape call if an invalid Kernel Mode CPU event and sync object h Memory corruption occurs during an Escape call if an invalid Kernel Mode CPU event and sync object handle are passed with the DriverKnownEscape flag reset.
nvd
CVE-2023-21636P3HIGHCVSS 7.8vAQT1000vQCA6390+49 more2023-09-05
CVE-2023-21636 [HIGH] CWE-129 CVE-2023-21636: Memory Corruption due to improper validation of array index in Linux while updating adn record. Memory Corruption due to improper validation of array index in Linux while updating adn record.
nvd
CVE-2023-21654P3HIGHCVSS 7.8vAPQ8096AUvAQT1000+54 more2023-09-05
CVE-2023-21654 [HIGH] CWE-119 CVE-2023-21654: Memory corruption in Audio during playback session with audio effects enabled. Memory corruption in Audio during playback session with audio effects enabled.
nvd
CVE-2022-40524P3HIGHCVSS 7.8vAQT1000vQCA6390+36 more2023-09-05
CVE-2022-40524 [HIGH] CWE-126 CVE-2022-40524: Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service. Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service.
nvd
CVE-2023-21638P3HIGHCVSS 7.8vAQT1000vFastConnect 6200+34 more2023-07-04
CVE-2023-21638 [HIGH] CWE-704 CVE-2023-21638: Memory corruption in Video while calling APIs with different instance ID than the one received in in Memory corruption in Video while calling APIs with different instance ID than the one received in initialization.
nvd
CVE-2022-33240P3HIGHCVSS 7.8vQCA6595vQCA6595AU+7 more2023-06-06
CVE-2022-33240 [HIGH] CWE-704 CVE-2022-33240: Memory corruption in Audio due to incorrect type cast during audio use-cases. Memory corruption in Audio due to incorrect type cast during audio use-cases.
nvd
CVE-2022-33281P3HIGHCVSS 7.8vFastConnect 6900vFastConnect 7800+4 more2023-05-02
CVE-2022-33281 [HIGH] CWE-129 CVE-2022-33281: Memory corruption due to improper validation of array index in computer vision while testing EVA ker Memory corruption due to improper validation of array index in computer vision while testing EVA kernel without sending any frames.
nvd
CVE-2022-33296P3HIGHCVSS 7.8v315 5G IoT ModemvAPQ8017+112 more2023-04-13
CVE-2022-33296 [HIGH] CWE-680 CVE-2022-33296: Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Neighbor List Update message.
nvd
CVE-2018-11816P3HIGHCVSS 7.8v9206 LTE ModemvAPQ8016+12 more2024-11-26
CVE-2018-11816 [HIGH] CWE-416 CVE-2018-11816: Crafted Binder Request Causes Heap UAF in MediaServer Crafted Binder Request Causes Heap UAF in MediaServer
nvd
CVE-2018-11952P3HIGHCVSS 7.8vMDM9206vMDM9607+16 more2024-11-26
CVE-2018-11952 [HIGH] CWE-287 CVE-2018-11952: An image with a version lower than the fuse version may potentially be booted lead to improper authe An image with a version lower than the fuse version may potentially be booted lead to improper authentication.
nvd
CVE-2016-10408P3HIGHCVSS 7.8v9206 LTE ModemvAPQ8037+3 more2024-11-26
CVE-2016-10408 [HIGH] CWE-284 CVE-2016-10408: QSEE will randomly experience a fatal error during execution due to speculative instruction fetches QSEE will randomly experience a fatal error during execution due to speculative instruction fetches from device memory. Device memory is not valid executable memory.
nvd
CVE-2025-47366P3HIGHCVSS 7.8vAR8035vFastConnect 6200+158 more2026-02-02
CVE-2025-47366 [HIGH] CWE-749 CVE-2025-47366: Cryptographic issue when a Trusted Zone with outdated code is triggered by a HLOS providing incorrec Cryptographic issue when a Trusted Zone with outdated code is triggered by a HLOS providing incorrect input.
nvd
CVE-2023-33105P3HIGHCVSS 7.5vAR8035vAR9380+147 more2024-03-04
CVE-2023-33105 [HIGH] CWE-16 CVE-2023-33105: Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent wit Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number.
nvd
CVE-2023-21625P3HIGHCVSS 7.5vAPQ8009vAPQ8017+44 more2023-08-08
CVE-2023-21625 [HIGH] CWE-126 CVE-2023-21625: Information disclosure in Network Services due to buffer over-read while the device receives DNS res Information disclosure in Network Services due to buffer over-read while the device receives DNS response.
nvd
CVE-2026-25292P3HIGHCVSS 7.6vAR8035vCQ7790+189 more2026-08-04
CVE-2026-25292 [HIGH] CWE-1286 CVE-2026-25292: Memory Corruption when processing untrusted user input in the fastboot command handler for audio fra Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration.
nvd
CVE-2023-33062P3HIGHCVSS 7.5v315 5G IoT ModemvAQT1000+291 more2024-01-02
CVE-2023-33062 [HIGH] CWE-126 CVE-2023-33062: Transient DOS in WLAN Firmware while parsing a BTM request. Transient DOS in WLAN Firmware while parsing a BTM request.
nvd
CVE-2024-33057P3HIGHCVSS 7.5vAR8035vCSR8811+169 more2024-09-02
CVE-2024-33057 [HIGH] CWE-126 CVE-2024-33057: Transient DOS while parsing the multi-link element Control field when common information length chec Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location.
nvd