cbcvebase.

Qualcomm Inc Snapdragon Mobile vulnerabilities

114 known vulnerabilities affecting qualcomm_inc/snapdragon_mobile.

Total CVEs
114
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL58HIGH52MEDIUM4

Vulnerabilities

Page 1 of 6
CVE-2016-10442P3CRITICALCVSS 9.8vMDM9640, SDM630, MSM8976, MSM8937, SDM845, MSM8976, MSM89522018-04-18
CVE-2016-10442 [CRITICAL] CWE-284 CVE-2016-10442: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9640, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9640, SDM630, MSM8976, MSM8937, SDM845, MSM8976, and MSM8952, when running module or kernel code with improper access control allowing writing to arbitrary regions of memory, the user may utilize this vector to alter module executable code.
nvd
CVE-2014-9994P3CRITICALCVSS 9.8vSD 400, SD 8002018-04-18
CVE-2014-9994 [CRITICAL] CWE-119 CVE-2014-9994: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 an In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 and SD 800, lack of validation of input could cause a integer overflow that could subsequently lead to a buffer overflow.
nvd
CVE-2016-10475P3CRITICALCVSS 9.8vSD 210/SD 212/SD 205, SD 400, SD 430, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 8202018-04-18
CVE-2016-10475 [CRITICAL] CWE-190 CVE-2016-10475: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 430, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, and SD 820, lack input validation may lead to a integer overflow that could potentially lead to a buffer overflow.
nvd
CVE-2014-10059P3CRITICALCVSS 9.8vMDM9615,MDM9625,SD 210/SD 212/SD 205,SD 400,SD 8002018-04-18
CVE-2014-10059 [CRITICAL] CWE-284 CVE-2014-10059: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, SD 210/SD 212/SD 205, SD 400, and SD 800, improper access control on ATCMD service allows third party services to access without user knowledge.
nvd
CVE-2015-9219P3CRITICALCVSS 9.8vSD 400, SD 8002018-04-18
CVE-2015-9219 [CRITICAL] CWE-190 CVE-2015-9219: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 an In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 and SD 800, an integer overflow to buffer overflow can occur in a DRM API.
nvd
CVE-2015-9150P3CRITICALCVSS 9.8vMDM9625, MDM9635M, SD 400, SD 8002018-04-18
CVE-2015-9150 [CRITICAL] CWE-119 CVE-2015-9150: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9625, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9625, MDM9635M, SD 400, and SD 800, while computing the length of memory allocated for a Diag event, if the buffer length is very small or greater than the maximum, an integer overflow may occur, which later results in a buffer overflow.
nvd
CVE-2014-10050P3CRITICALCVSS 9.8vMSM8996, MSM8939, MSM8976, MSM8917, SDM845, SDM6602018-04-18
CVE-2014-10050 [CRITICAL] CWE-284 CVE-2014-10050: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MSM8996, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MSM8996, MSM8939, MSM8976, MSM8917, SDM845, and SDM660, access control collision vulnerability when accessing the replay protected memory block.
nvd
CVE-2015-9063P3CRITICALCVSS 9.8vMDM9640, MDM9645, SD 450, SD 617, SD 625, SD 650/52, SD 8202017-08-18
CVE-2015-9063 [CRITICAL] CWE-119 CVE-2015-9063: In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vu In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a procedure involving a remote UIM client.
nvd
CVE-2015-9179P3CRITICALCVSS 9.8vMSM89742018-04-18
CVE-2015-9179 [CRITICAL] CWE-119 CVE-2015-9179: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MSM8974, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MSM8974, lack of length checking in OEMCrypto_DeriveKeysFromSessionKey() could lead to a buffer overflow vulnerability.
nvd
CVE-2016-10407P3CRITICALCVSS 9.8vSD 210/SD 212/SD 205, SD 400, SD 410/12, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 8352018-04-18
CVE-2016-10407 [CRITICAL] CWE-190 CVE-2016-10407: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, and SD 835, an integer overflow leading to buffer overflow can occur during a VT call.
nvd
CVE-2016-10478P3CRITICALCVSS 9.8vSD 6172018-04-18
CVE-2016-10478 [CRITICAL] CWE-190 CVE-2016-10478: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 617, i In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 617, incorrect size calculation in QCRIL SCWS processing have Integer overflow which will lead to a buffer overflow.
nvd
CVE-2015-9118P3CRITICALCVSS 9.8vMDM9615, MDM9625, MDM9635M, SD 400, SD 410/12, SD 615/16/SD 415, SD 800, SD 808, SD 8102018-04-18
CVE-2015-9118 [CRITICAL] CWE-119 CVE-2015-9118: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, SD 400, SD 410/12, SD 615/16/SD 415, SD 800, SD 808, and SD 810, in ADSP's QDI Root-PD driver, untrusted arguments from User PD may cause integer overflow resulting in buffer overflow.
nvd
CVE-2014-9995P3CRITICALCVSS 9.8vSD 400, SD 8002018-04-18
CVE-2014-9995 [CRITICAL] CWE-119 CVE-2014-9995: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 an In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 and SD 800, in drmprov_cmd_verify_key(), the variable feature_name_length is not validated. There is a check for feature_name_len + filePathLen but there might be an integer wrap when checking feature_name_len + filePathLen. This leads to a buffer overf
nvd
CVE-2015-9066P3CRITICALCVSS 9.8vMDM96152017-08-18
CVE-2015-9066 [CRITICAL] CWE-119 CVE-2015-9066: In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vu In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in an Inter-RAT procedure.
nvd
CVE-2017-18171P3HIGHCVSS 8.8vQCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 835, SD 845, SD 850, SDM630, SDM636, SDM660, SDM710, Snapdragon_High_Med_20162018-10-23
CVE-2017-18171 [HIGH] CWE-119 CVE-2017-18171: Improper input validation for GATT data packet received in Bluetooth Controller function can lead to Improper input validation for GATT data packet received in Bluetooth Controller function can lead to possible memory corruption in Snapdragon Mobile in version QCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 835, SD 845, SD 850, SDM630, SDM636, SDM660, SDM710, Snapdragon
nvd
CVE-2022-25750P3HIGHCVSS 8.8vKailua, SG8275, SG8275P, SM8550, WCD9380, WCD9385, WCD9390, WCD9395, WCN6855, WCN6856, WCN7850, WCN7851, WSA8840, WSA8845, WSA8845H2022-10-19
CVE-2022-25750 [HIGH] CWE-415 CVE-2022-25750: Memory corruption in BTHOST due to double free while music playback and calls over bluetooth headset Memory corruption in BTHOST due to double free while music playback and calls over bluetooth headset in Snapdragon Mobile
nvd
CVE-2015-9215P3CRITICALCVSS 9.8vMDM9615, MDM9625, MDM9635M, SD 8102018-04-18
CVE-2015-9215 [CRITICAL] CWE-476 CVE-2015-9215: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, and SD 810, improper input validation can cause a null pointer dereference in USB bootloader find_ep() function.
nvd
CVE-2015-9223P3CRITICALCVSS 9.8vMDM9615, MDM9625, MDM9635M, SD 400, SD 600, SD 8002018-04-18
CVE-2015-9223 [CRITICAL] CWE-119 CVE-2015-9223: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, SD 400, SD 600, and SD 800, a buffer overflow can occur when processing an audio buffer.
nvd
CVE-2015-9195P3CRITICALCVSS 9.8vMDM9625, MDM9635M, MDM9650, MDM9655, SD 400, SD 410/12, SD 615/16/SD 415, SD 617, SD 650/52, SD 808, SD 810, SDX202018-04-18
CVE-2015-9195 [CRITICAL] CWE-119 CVE-2015-9195: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9625, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9625, MDM9635M, MDM9650, MDM9655, SD 400, SD 410/12, SD 615/16/SD 415, SD 617, SD 650/52, SD 808, SD 810, and SDX20, in a QTEE syscall handler, HLOS can cause a buffer overflow to occur.
nvd
CVE-2014-10056P3CRITICALCVSS 9.8vSD 210/SD 212/SD 2052018-04-18
CVE-2014-10056 [CRITICAL] CWE-119 CVE-2014-10056: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, A buffer overflow can potentially occur in any OpenCL application that calls clBuildProgram() with a device of type CL_DEVICE_TYPE_CPU in its device_list argument.
nvd
Qualcomm Inc Snapdragon Mobile vulnerabilities | cvebase