cbcvebase.

Qualcomm Inc Snapdragon Mobile vulnerabilities

114 known vulnerabilities affecting qualcomm_inc/snapdragon_mobile.

Total CVEs
114
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL58HIGH52MEDIUM4

Vulnerabilities

Page 2 of 6
CVE-2018-3589P3CRITICALCVSS 9.8vMDM9650, MDM9655, SD 835, SD 845, SD 8502018-04-11
CVE-2018-3589 [CRITICAL] CWE-119 CVE-2018-3589: In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9650, MDM9655, SD In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9650, MDM9655, SD 835, SD 845, SD 850, the vswr capture size is larger than the maximum size of a diag logPacket, which can lead to a buffer overflow when the sample buffer is copied to the logPacket buffer.
nvd
CVE-2017-18135P3CRITICALCVSS 9.8vMDM9650, MDM9655, SD 450, SD 625, SD 650/52, SD 835, SD 845, SD 8502018-04-11
CVE-2017-18135 [CRITICAL] CWE-119 CVE-2017-18135: In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9650, MDM9655, SD In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9650, MDM9655, SD 450, SD 625, SD 650/52, SD 835, SD 845, SD 850, in the Wireless Data Service (WDS) module, a buffer overflow can occur.
nvd
CVE-2016-10440P3CRITICALCVSS 9.8vSD 425, SD 430, SD 450, SD 625, SD 650/522018-04-18
CVE-2016-10440 [CRITICAL] CWE-284 CVE-2016-10440: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 425, S In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, and SD 650/52, there is improper access control to a bus.
nvd
CVE-2015-9183P3CRITICALCVSS 9.8vSD 410/12, SD 617, SD 650/52, SD 800, SD 808, SD 8102018-04-18
CVE-2015-9183 [CRITICAL] CWE-119 CVE-2015-9183: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 410/12 In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 410/12, SD 617, SD 650/52, SD 800, SD 808, and SD 810, in TQS QSEE application, while parsing "Set Certificates" command an integer overflow may result in buffer overflow.
nvd
CVE-2017-14915P3CRITICALCVSS 9.8vSD 625, SD 650/52, SD 8352018-03-30
CVE-2017-14915 [CRITICAL] CWE-416 CVE-2017-14915: In Android before 2018-01-05 on Qualcomm Snapdragon Mobile SD 625, SD 650/52, SD 835, accessing SPCO In Android before 2018-01-05 on Qualcomm Snapdragon Mobile SD 625, SD 650/52, SD 835, accessing SPCOM functions with a compromised client structure can result in a Use After Free condition.
nvd
CVE-2016-10477P3CRITICALCVSS 9.8vSD 210/SD 212/SD 205, SD 400, SD 430, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 8202018-04-18
CVE-2016-10477 [CRITICAL] CWE-119 CVE-2016-10477: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 430, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, and SD 820, while processing smart card requests, a buffer overflow can occur.
nvd
CVE-2014-9996P3CRITICALCVSS 9.8vSD 400, SD 8002018-04-18
CVE-2014-9996 [CRITICAL] CWE-119 CVE-2014-9996: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 an In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 and SD 800, while verifying provisioning, a buffer overflow can occur.
nvd
CVE-2017-18142P3CRITICALCVSS 9.8vMDM9650, MDM9655, SD 835, SD 845, SD 8502018-04-11
CVE-2017-18142 [CRITICAL] CWE-119 CVE-2017-18142: In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9650, MDM9655, SD In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9650, MDM9655, SD 835, SD 845, SD 850, while processing the IMS SIP username, a buffer overflow can occur.
nvd
CVE-2017-18134P3CRITICALCVSS 9.8vSD 845, SD 8502018-04-11
CVE-2017-18134 [CRITICAL] CWE-119 CVE-2017-18134: In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile SD 845, SD 850, a bu In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile SD 845, SD 850, a buffer overflow may potentially occur while processing a response from the SIM card.
nvd
CVE-2017-18137P3CRITICALCVSS 9.8vMDM9640, MDM9645, MDM9650, MDM9655, SD 450, SD 625, SD 650/52, SD 810, SD 820, SD 8352018-04-11
CVE-2017-18137 [CRITICAL] CWE-119 CVE-2017-18137: In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9640, MDM9645, MD In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9640, MDM9645, MDM9650, MDM9655, SD 450, SD 625, SD 650/52, SD 810, SD 820, SD 835, while processing the IPv6 pdp address of the pdp context, a buffer overflow can occur.
nvd
CVE-2015-9174P3CRITICALCVSS 9.8vSD 410/12, SD 617, SD 650/52, SD 800, SD 808, SD 8102018-04-18
CVE-2015-9174 [CRITICAL] CWE-119 CVE-2015-9174: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 410/12 In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 410/12, SD 617, SD 650/52, SD 800, SD 808, and SD 810, lack of validation of the return value prior to using for buffer allocation in QSEE application, TQS, may result in memory overwrite.
nvd
CVE-2016-10419P3CRITICALCVSS 9.8vMDM9640, MDM9645, MDM9650, MDM9655, SD 450, SD 625, SD 650/52, SD 820, SD 835, SD 845, SD 850, SDX202018-04-18
CVE-2016-10419 [CRITICAL] CWE-119 CVE-2016-10419: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9640, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9640, MDM9645, MDM9650, MDM9655, SD 450, SD 625, SD 650/52, SD 820, SD 835, SD 845, SD 850, and SDX20, when initializing scheduler object service request, an out of bounds access could occur due to uninitialized object number.
nvd
CVE-2015-9142P3CRITICALCVSS 9.8vMDM9645, MDM9650, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SDM630, SDM636, SDM660, Snapdragon_High_Med_20162018-04-18
CVE-2015-9142 [CRITICAL] CWE-118 CVE-2015-9142: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9645, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9645, MDM9650, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SDM630, SDM636, SDM660, and Snapdragon_High_Med_2016, bounds check is missing for vtable inde
nvd
CVE-2017-18170P3HIGHCVSS 8.8vQCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 835, SD 845, SD 850, SDM630, SDM636, SDM660, SDM710, Snapdragon_High_Med_20162018-10-23
CVE-2017-18170 [HIGH] CWE-191 CVE-2017-18170: Improper input validation in Bluetooth Controller function can lead to possible memory corruption in Improper input validation in Bluetooth Controller function can lead to possible memory corruption in Snapdragon Mobile in version QCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 835, SD 845, SD 850, SDM630, SDM636, SDM660, SDM710, Snapdragon_High_Med_2016.
nvd
CVE-2016-10458P3CRITICALCVSS 9.8vSD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 808, SD 810, SD 820, SD 835, SD 845, SDM630, SDM636, SDM660, SDX20, Snapdragon_High_Med_20162018-04-18
CVE-2016-10458 [CRITICAL] CWE-119 CVE-2016-10458: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 808, SD 810, SD 820, SD 835, SD 845, SDM630, SDM636, SDM660, SDX20, and Snapdragon_High_Med_2016, the 'proper' solution for this will be
nvd
CVE-2017-8275P3CRITICALCVSS 9.8vSD 210/SD 212/SD 205, SD 400, SD 430, SD 450, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 820, SD 8352018-04-11
CVE-2017-8275 [CRITICAL] CWE-190 CVE-2017-8275: In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205 In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 430, SD 450, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 820, SD 835, an integer overflow vulnerability exists in a video library.
nvd
CVE-2016-10479P3CRITICALCVSS 9.8vMDM9607, MDM9615, MDM9635M, MDM9640, SD 210/SD 212/SD 205, SD 400, SD 600, SD 615/16/SD 415, SD 617, SD 650/52, SD 800, SD 810, SD 8202018-04-18
CVE-2016-10479 [CRITICAL] CWE-787 CVE-2016-10479: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9607, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9607, MDM9615, MDM9635M, MDM9640, SD 210/SD 212/SD 205, SD 400, SD 600, SD 615/16/SD 415, SD 617, SD 650/52, SD 800, SD 810, and SD 820, an arbitrary length value from an incoming message to QMI Proxy can lead to an out-of-bounds write in the stack variabl
nvd
CVE-2014-10046P3CRITICALCVSS 9.8vMDM9615, MDM9625, MDM9635M, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 615/16/SD 415, SD 800, SD 808, SD 8102018-04-18
CVE-2014-10046 [CRITICAL] CWE-416 CVE-2014-10046: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 615/16/SD 415, SD 800, SD 808, and SD 810, use after free vulnerability when the PDN throttle info block is freed without clearing the corresponding active timer.
nvd
CVE-2016-10460P3CRITICALCVSS 9.8vSD 835, SD 845, SD 8502018-04-18
CVE-2016-10460 [CRITICAL] CWE-119 CVE-2016-10460: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 835, S In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 835, SD 845, and SD 850, vendor specific opcodes may not have any packet length validation leading to buffer over-reads.
nvd
CVE-2016-10483P3HIGHCVSS 7.5vSD 410/12, SD 615/16/SD 415, SD 808, SD 8102018-04-18
CVE-2016-10483 [HIGH] CWE-20 CVE-2016-10483: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 410/12 In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 410/12, SD 615/16/SD 415, SD 808, and SD 810, improper input validation while processing SCM Command can lead to unauthorized memory access.
nvd
Qualcomm Inc Snapdragon Mobile vulnerabilities | cvebase