cbcvebase.

Qualcomm Inc Snapdragon vulnerabilities

962 known vulnerabilities affecting qualcomm_inc/snapdragon.

Total CVEs
962
CISA KEV
8
actively exploited
Public exploits
2
Exploited in wild
9
Severity breakdown
CRITICAL53HIGH752MEDIUM157

Vulnerabilities

Page 43 of 49
CVE-2026-21368P4MEDIUMCVSS 5.3vFastConnect 6700vFastConnect 6900+89 more2026-07-06
CVE-2026-21368 [MEDIUM] CWE-787 CVE-2026-21368: Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during va Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.
nvd
CVE-2024-23378P4MEDIUMCVSS 6.7vQAM8255PvQAM8650P+16 more2024-10-07
CVE-2024-23378 [MEDIUM] CWE-120 CVE-2024-23378: Memory corruption while invoking IOCTL calls for MSM module from the user space during audio playbac Memory corruption while invoking IOCTL calls for MSM module from the user space during audio playback and record.
nvd
CVE-2025-47370P4MEDIUMCVSS 6.5vAR8035vCSRB31024+134 more2025-11-04
CVE-2025-47370 [MEDIUM] CWE-617 CVE-2025-47370: Transient DOS when a remote device sends an invalid connection request during BT connectable LE scan Transient DOS when a remote device sends an invalid connection request during BT connectable LE scan.
nvd
CVE-2026-24077P4MEDIUMCVSS 6.5vAQT1000vAR8035+142 more2026-08-04
CVE-2026-24077 [MEDIUM] CWE-191 CVE-2026-24077: Information Disclosure when processing wireless network channel switch information with improperly f Information Disclosure when processing wireless network channel switch information with improperly formatted length fields.
nvd
CVE-2025-27045P4MEDIUMCVSS 6.1vFastConnect 6900vFastConnect 7800+16 more2025-10-09
CVE-2025-27045 [MEDIUM] CWE-126 CVE-2025-27045: Information disclosure while processing batch command execution in Video driver. Information disclosure while processing batch command execution in Video driver.
nvd
CVE-2026-21384P4MEDIUMCVSS 5.3vFastConnect 6700vFastConnect 6900+77 more2026-07-06
CVE-2026-21384 [MEDIUM] CWE-787 CVE-2026-21384: Memory Corruption when updating prepared commands with invalid port indices based on user space inpu Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.
nvd
CVE-2023-33065P4HIGHCVSS 7.1vAQT1000vAR8035+102 more2024-02-06
CVE-2023-33065 [HIGH] CWE-126 CVE-2023-33065: Information disclosure in Audio while accessing AVCS services from ADSP payload. Information disclosure in Audio while accessing AVCS services from ADSP payload.
nvd
CVE-2023-21629P4MEDIUMCVSS 6.8v315 5G IoT ModemvAPQ8017+210 more2023-07-04
CVE-2023-21629 [MEDIUM] CWE-415 CVE-2023-21629: Memory Corruption in Modem due to double free while parsing the PKCS15 sim files. Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.
nvd
CVE-2026-24078P4MEDIUMCVSS 6.5v5G Fixed Wireless Access PlatformvAR8035+145 more2026-08-04
CVE-2026-24078 [MEDIUM] CWE-359 CVE-2026-24078: Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall S Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling.
nvd
CVE-2024-45556P4MEDIUMCVSS 6.5vFastConnect 6900vFastConnect 7800+58 more2025-04-07
CVE-2024-45556 [MEDIUM] CWE-1262 CVE-2024-45556: Cryptographic issue may arise because the access control configuration permits Linux to read key reg Cryptographic issue may arise because the access control configuration permits Linux to read key registers in TCSR.
nvd
CVE-2025-27030P4MEDIUMCVSS 6.1vC-V2X 9150vQAM8295P+39 more2025-09-24
CVE-2025-27030 [MEDIUM] CWE-126 CVE-2025-27030: information disclosure while invoking calibration data from user space to update firmware size. information disclosure while invoking calibration data from user space to update firmware size.
nvd
CVE-2025-27064P4MEDIUMCVSS 6.1vFastConnect 6900vFastConnect 7800+75 more2025-11-04
CVE-2025-27064 [MEDIUM] CWE-126 CVE-2025-27064: Information disclosure while registering commands from clients with diag through diagHal. Information disclosure while registering commands from clients with diag through diagHal.
nvd
CVE-2025-47331P4MEDIUMCVSS 6.1vAR8031vAR8035+297 more2026-01-07
CVE-2025-47331 [MEDIUM] CWE-126 CVE-2025-47331: Information disclosure while processing a firmware event. Information disclosure while processing a firmware event.
nvd
CVE-2024-38426P4MEDIUMCVSS 5.3v315 5G IoT Modemv9205 LTE Modem+162 more2025-03-03
CVE-2024-38426 [MEDIUM] CWE-287 CVE-2024-38426: While processing the authentication message in UE, improper authentication may lead to information d While processing the authentication message in UE, improper authentication may lead to information disclosure.
nvd
CVE-2023-33014P4MEDIUMCVSS 6.8vAR8035vFastConnect 6700+35 more2024-01-02
CVE-2023-33014 [MEDIUM] CWE-20 CVE-2023-33014: Information disclosure in Core services while processing a Diag command. Information disclosure in Core services while processing a Diag command.
nvd
CVE-2025-47402P4MEDIUMCVSS 6.5vAR8035vCologne+92 more2026-02-02
CVE-2025-47402 [MEDIUM] CWE-126 CVE-2025-47402: Transient DOS when processing a received frame with an excessively large authentication information Transient DOS when processing a received frame with an excessively large authentication information element.
nvd
CVE-2025-21464P4MEDIUMCVSS 6.5v315 5G IoT Modemv9205 LTE Modem+335 more2025-08-06
CVE-2025-21464 [MEDIUM] CWE-125 CVE-2025-21464: Information disclosure while reading data from an image using specified offset and size parameters. Information disclosure while reading data from an image using specified offset and size parameters.
nvd
CVE-2024-45551P4MEDIUMCVSS 6.2vAQT1000vAR8035+239 more2025-04-07
CVE-2024-45551 [MEDIUM] CWE-1390 CVE-2024-45551: Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verification failure, potentially leading to a user throttling bypass.
nvd
CVE-2025-47362P4MEDIUMCVSS 6.1vMSM8996AUvQAM8255P+36 more2025-11-04
CVE-2025-47362 [MEDIUM] CWE-126 CVE-2025-47362: Information disclosure while processing message from client with invalid payload. Information disclosure while processing message from client with invalid payload.
nvd
CVE-2026-21370P4MEDIUMCVSS 5.3vFastConnect 6700vFastConnect 6900+89 more2026-07-06
CVE-2026-21370 [MEDIUM] CWE-787 CVE-2026-21370: Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed va Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values.
nvd