Snapdragon 888\+ 5g Mobile Firmware
by Qualcomm
CVEs (60)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-43047 | Hig | 0.63 | 7.8 | 0.01 | KEV | Oct 7, 2024 | Memory corruption while maintaining memory maps of HLOS memory. | |
| CVE-2023-43556 | Cri | 0.60 | 9.3 | 0.00 | Jun 3, 2024 | Memory corruption in Hypervisor when platform information mentioned is not aligned. | ||
| CVE-2023-43538 | Cri | 0.60 | 9.3 | 0.00 | Jun 3, 2024 | Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization. | ||
| CVE-2023-28578 | Cri | 0.60 | 9.3 | 0.00 | Mar 4, 2024 | Memory corruption in Core Services while executing the command for removing a single event listener. | ||
| CVE-2025-21450 | Cri | 0.59 | 9.1 | 0.00 | Jul 8, 2025 | Cryptographic issue occurs due to use of insecure connection method while downloading. | ||
| CVE-2023-43551 | Cri | 0.59 | 9.1 | 0.00 | Jun 3, 2024 | Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command. | ||
| CVE-2024-38420 | Hig | 0.57 | 8.8 | 0.00 | Feb 3, 2025 | Memory corruption while configuring a Hypervisor based input virtual device. | ||
| CVE-2024-33060 | Hig | 0.55 | 8.4 | 0.00 | Sep 2, 2024 | Memory corruption when two threads try to map and unmap a single node simultaneously. | ||
| CVE-2024-21471 | Hig | 0.55 | 8.4 | 0.00 | May 6, 2024 | Memory corruption when IOMMU unmap of a GPU buffer fails in Linux. | ||
| CVE-2023-43531 | Hig | 0.55 | 8.4 | 0.00 | May 6, 2024 | Memory corruption while verifying the serialized header when the key pairs are generated. | ||
| CVE-2023-33119 | Hig | 0.55 | 8.4 | 0.00 | May 6, 2024 | Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache. | ||
| CVE-2024-21468 | Hig | 0.55 | 8.4 | 0.00 | Apr 1, 2024 | Memory corruption when there is failed unmap operation in GPU. | ||
| CVE-2023-33023 | Hig | 0.55 | 8.4 | 0.00 | Apr 1, 2024 | Memory corruption while processing finish_sign command to pass a rsp buffer. | ||
| CVE-2023-28547 | Hig | 0.55 | 8.4 | 0.00 | Apr 1, 2024 | Memory corruption in SPS Application while requesting for public key in sorter TA. | ||
| CVE-2023-33066 | Hig | 0.55 | 8.4 | 0.00 | Mar 4, 2024 | Memory corruption in Audio while processing RT proxy port register driver. | ||
| CVE-2025-21427 | Hig | 0.53 | 8.2 | 0.00 | Jul 8, 2025 | Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network. | ||
| CVE-2023-43555 | Hig | 0.53 | 8.2 | 0.00 | Jun 3, 2024 | Information disclosure in Video while parsing mp2 clip with invalid section length. | ||
| CVE-2025-27061 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2025 | Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware. | ||
| CVE-2025-27043 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2025 | Memory corruption while processing manipulated payload in video firmware. | ||
| CVE-2025-27042 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2025 | Memory corruption while processing video packets received from video firmware. |
- risk 0.63cvss 7.8epss 0.01
Memory corruption while maintaining memory maps of HLOS memory.
- risk 0.60cvss 9.3epss 0.00
Memory corruption in Hypervisor when platform information mentioned is not aligned.
- risk 0.60cvss 9.3epss 0.00
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
- risk 0.60cvss 9.3epss 0.00
Memory corruption in Core Services while executing the command for removing a single event listener.
- risk 0.59cvss 9.1epss 0.00
Cryptographic issue occurs due to use of insecure connection method while downloading.
- risk 0.59cvss 9.1epss 0.00
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
- risk 0.57cvss 8.8epss 0.00
Memory corruption while configuring a Hypervisor based input virtual device.
- risk 0.55cvss 8.4epss 0.00
Memory corruption when two threads try to map and unmap a single node simultaneously.
- risk 0.55cvss 8.4epss 0.00
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while verifying the serialized header when the key pairs are generated.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
- risk 0.55cvss 8.4epss 0.00
Memory corruption when there is failed unmap operation in GPU.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while processing finish_sign command to pass a rsp buffer.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in SPS Application while requesting for public key in sorter TA.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in Audio while processing RT proxy port register driver.
- risk 0.53cvss 8.2epss 0.00
Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.
- risk 0.53cvss 8.2epss 0.00
Information disclosure in Video while parsing mp2 clip with invalid section length.
- risk 0.51cvss 7.8epss 0.00
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing manipulated payload in video firmware.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing video packets received from video firmware.
Page 1 of 3