Qualcomm Inc Snapdragon vulnerabilities

908 known vulnerabilities affecting qualcomm_inc/snapdragon.

Total CVEs
908
CISA KEV
8
actively exploited
Public exploits
0
Exploited in wild
4
Severity breakdown
CRITICAL51HIGH715MEDIUM142

Vulnerabilities

Page 41 of 46
CVE-2022-25730HIGHCVSS 7.5v9205 LTE Modemv9206 LTE Modem+23 more2023-04-13
CVE-2022-25730 [HIGH] CWE-126 CVE-2022-25730: Information disclosure in modem due to improper check of IP type while processing DNS server query Information disclosure in modem due to improper check of IP type while processing DNS server query
nvd
CVE-2022-33291HIGHCVSS 7.5v9205 LTE Modemv9206 LTE Modem+35 more2023-04-13
CVE-2022-33291 [HIGH] CWE-126 CVE-2022-33291: Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed l Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.
nvd
CVE-2022-25747HIGHCVSS 7.5v9205 LTE Modemv9206 LTE Modem+10 more2023-04-13
CVE-2022-25747 [HIGH] CWE-126 CVE-2022-25747: Information disclosure in modem due to improper input validation during parsing of upcoming CoAP mes Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message
nvd
CVE-2022-33223HIGHCVSS 7.5v9205 LTE Modemv9206 LTE Modem+10 more2023-04-13
CVE-2022-33223 [HIGH] CWE-476 CVE-2022-33223: Transient DOS in Modem due to null pointer dereference while processing the incoming packet with htt Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding.
nvd
CVE-2022-25731HIGHCVSS 7.5v9205 LTE Modemv9206 LTE Modem+11 more2023-04-13
CVE-2022-25731 [HIGH] CWE-131 CVE-2022-25731: Information disclosure in modem due to buffer over-read while processing packets from DNS server Information disclosure in modem due to buffer over-read while processing packets from DNS server
nvd
CVE-2022-33301HIGHCVSS 7.8vQCA6595vQCA6595AU+14 more2023-04-13
CVE-2022-33301 [HIGH] CWE-704 CVE-2022-33301: Memory corruption due to incorrect type conversion or cast in audio while using audio playback/captu Memory corruption due to incorrect type conversion or cast in audio while using audio playback/capture when crafted address is sent from AGM IPC to AGM.
nvd
CVE-2022-33294HIGHCVSS 7.5v9205 LTE Modemv9206 LTE Modem+10 more2023-04-13
CVE-2022-33294 [HIGH] CWE-476 CVE-2022-33294: Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registratio Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registration/update/bootstrap request message.
nvd
CVE-2022-33302HIGHCVSS 7.8v315 5G IoT Modemv9205 LTE Modem+222 more2023-04-13
CVE-2022-33302 [HIGH] CWE-129 CVE-2022-33302: Memory corruption due to improper validation of array index in User Identity Module when APN TLV len Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command length.
nvd
CVE-2022-33269HIGHCVSS 7.8vAQT1000vAR8035+97 more2023-04-13
CVE-2022-33269 [HIGH] CWE-190 CVE-2022-33269: Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment. Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment.
nvd
CVE-2022-40503HIGHCVSS 7.5v9206 LTE ModemvAPQ8017+182 more2023-04-13
CVE-2022-40503 [HIGH] CWE-126 CVE-2022-40503: Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming. Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.
nvd
CVE-2022-33295HIGHCVSS 7.5v9205 LTE Modemv9206 LTE Modem+10 more2023-04-13
CVE-2022-33295 [HIGH] CWE-126 CVE-2022-33295: Information disclosure in Modem due to buffer over-read while parsing the wms message received given Information disclosure in Modem due to buffer over-read while parsing the wms message received given the buffer and its length.
nvd
CVE-2023-21630HIGHCVSS 7.8vFastConnect 6700vFastConnect 6900+38 more2023-04-13
CVE-2023-21630 [HIGH] CWE-191 CVE-2023-21630: Memory Corruption in Multimedia Framework due to integer overflow when synx bind is called along wit Memory Corruption in Multimedia Framework due to integer overflow when synx bind is called along with synx signal.
nvd
CVE-2022-33258HIGHCVSS 7.5v9205 LTE Modemv9206 LTE Modem+10 more2023-04-13
CVE-2022-33258 [HIGH] CWE-126 CVE-2022-33258: Information disclosure due to buffer over-read in modem while reading configuration parameters. Information disclosure due to buffer over-read in modem while reading configuration parameters.
nvd
CVE-2022-33231HIGHCVSS 7.8v315 5G IoT Modemv9205 LTE Modem+215 more2023-04-13
CVE-2022-33231 [HIGH] CWE-415 CVE-2022-33231: Memory corruption due to double free in core while initializing the encryption key. Memory corruption due to double free in core while initializing the encryption key.
nvd
CVE-2022-33222HIGHCVSS 7.5v9205 LTE Modemv9206 LTE Modem+11 more2023-04-13
CVE-2022-33222 [HIGH] CWE-126 CVE-2022-33222: Information disclosure due to buffer over-read while parsing DNS response packets in Modem. Information disclosure due to buffer over-read while parsing DNS response packets in Modem.
nvd
CVE-2022-40532HIGHCVSS 7.8v315 5G IoT Modemv9205 LTE Modem+350 more2023-04-13
CVE-2022-40532 [HIGH] CWE-190 CVE-2022-40532: Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to t Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
nvd
CVE-2022-33298HIGHCVSS 7.8vAQT1000vFastConnect 6200+74 more2023-04-13
CVE-2022-33298 [HIGH] CWE-416 CVE-2022-33298: Memory corruption due to use after free in Modem while modem initialization. Memory corruption due to use after free in Modem while modem initialization.
nvd
CVE-2022-33288HIGHCVSS 8.8v315 5G IoT ModemvAQT1000+124 more2023-04-13
CVE-2022-33288 [HIGH] CWE-120 CVE-2022-33288: Memory corruption due to buffer copy without checking the size of input in Core while sending SCM co Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information.
nvd
CVE-2022-33282HIGHCVSS 7.8vMSM8996AUvQAM8295P+18 more2023-04-13
CVE-2022-33282 [HIGH] CWE-680 CVE-2022-33282: Memory corruption in Automotive Multimedia due to integer overflow to buffer overflow during IOCTL c Memory corruption in Automotive Multimedia due to integer overflow to buffer overflow during IOCTL calls in video playback.
nvd
CVE-2022-25726HIGHCVSS 7.5v9205 LTE Modemv9206 LTE Modem+22 more2023-04-13
CVE-2022-25726 [HIGH] CWE-126 CVE-2022-25726: Information disclosure in modem data due to array out of bound access while handling the incoming DN Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet
nvd