kernel
by Qualcomm
CVEs (13)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-21472 | Hig | 0.55 | 8.4 | 0.00 | Apr 1, 2024 | Memory corruption in Kernel while handling GPU operations. | ||
| CVE-2023-33053 | Hig | 0.55 | 8.4 | 0.00 | Dec 5, 2023 | Memory corruption in Kernel while parsing metadata. | ||
| CVE-2022-25746 | Hig | 0.53 | 8.1 | 0.00 | Jan 9, 2023 | Memory corruption in kernel due to missing checks when updating the access rights of a memextent mapping. | ||
| CVE-2025-47358 | Hig | 0.51 | 7.8 | 0.00 | Feb 2, 2026 | Memory Corruption when user space address is modified and passed to mem_free API, causing kernel memory to be freed inadvertently. | ||
| CVE-2025-21455 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while submitting blob data to kernel space though IOCTL. | ||
| CVE-2024-45565 | Hig | 0.51 | 7.8 | 0.00 | May 6, 2025 | Memory corruption when blob structure is modified by user-space after kernel verification. | ||
| CVE-2024-53033 | Hig | 0.51 | 7.8 | 0.00 | Mar 3, 2025 | Memory corruption while doing Escape call when user provides valid kernel address in the place of valid user buffer address. | ||
| CVE-2018-13918 | Hig | 0.51 | 7.8 | 0.00 | Apr 4, 2019 | kernel could return a received message length higher than expected, which leads to buffer overflow in a subsequent operation and stops normal operation in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, in MDM9150,… | ||
| CVE-2022-40529 | Hig | 0.46 | 7.1 | 0.00 | Jun 6, 2023 | Memory corruption due to improper access control in kernel while processing a mapping request from root process. | ||
| CVE-2022-40523 | Hig | 0.46 | 7.1 | 0.00 | Jun 6, 2023 | Information disclosure in Kernel due to indirect branch misprediction. | ||
| CVE-2024-33040 | Med | 0.44 | 6.7 | 0.00 | Dec 2, 2024 | Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access. | ||
| CVE-2024-23376 | Med | 0.44 | 6.7 | 0.00 | Oct 7, 2024 | Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IOCTL call. | ||
| CVE-2016-5854 | Med | 0.31 | 4.7 | 0.00 | Aug 16, 2017 | In a driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, kernel heap memory can be exposed to userspace. |
- risk 0.55cvss 8.4epss 0.00
Memory corruption in Kernel while handling GPU operations.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in Kernel while parsing metadata.
- risk 0.53cvss 8.1epss 0.00
Memory corruption in kernel due to missing checks when updating the access rights of a memextent mapping.
- risk 0.51cvss 7.8epss 0.00
Memory Corruption when user space address is modified and passed to mem_free API, causing kernel memory to be freed inadvertently.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while submitting blob data to kernel space though IOCTL.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when blob structure is modified by user-space after kernel verification.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while doing Escape call when user provides valid kernel address in the place of valid user buffer address.
- risk 0.51cvss 7.8epss 0.00
kernel could return a received message length higher than expected, which leads to buffer overflow in a subsequent operation and stops normal operation in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, in MDM9150,…
- risk 0.46cvss 7.1epss 0.00
Memory corruption due to improper access control in kernel while processing a mapping request from root process.
- risk 0.46cvss 7.1epss 0.00
Information disclosure in Kernel due to indirect branch misprediction.
- risk 0.44cvss 6.7epss 0.00
Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access.
- risk 0.44cvss 6.7epss 0.00
Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IOCTL call.
- risk 0.31cvss 4.7epss 0.00
In a driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, kernel heap memory can be exposed to userspace.