VYPR
Vendor

Qualcomm

Qualcomm Incorporated is an American multinational technology corporation headquartered in San Diego, California.The company develops and designs technologies for global communications and computing, including next-generation mobile networks, smart devices, and semiconductors — such as mobile processors and artificial intelligence chips. The company holds essential patents for global mobile communication standards including 5G, 4G, CDMA2000, TD-SCDMA and WCDMA.

Founded 1985
Products
2,935
CVEs
3,001
Across products
26,771
Status
Private

Products

2,935
View all 2,935 products →

Recent CVEs

3,001
View all 3,001 CVEs →
  • CVE-2022-31885CriJun 28, 2022
    risk 0.69cvss 9.8epss 0.32

    Marval MSM v14.19.0.12476 is vulnerable to OS Command Injection due to the insecure handling of VBScripts.

  • CVE-2025-21479HigKEVJun 3, 2025
    risk 0.68cvss 8.6epss 0.01

    Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.

  • CVE-2025-21480HigKEVJun 3, 2025
    risk 0.68cvss 8.6epss 0.00

    Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.

  • CVE-1999-0006CriJul 14, 1998
    risk 0.68cvss 9.8epss 0.12

    Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command.

  • CVE-2023-33107HigKEVDec 5, 2023
    risk 0.67cvss 8.4epss 0.01

    Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

  • CVE-2023-33106HigKEVDec 5, 2023
    risk 0.67cvss 8.4epss 0.01

    Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.

  • CVE-2022-22071HigKEVJun 14, 2022
    risk 0.67cvss 8.4epss 0.00

    Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2021-1905HigKEVMay 7, 2021
    risk 0.67cvss 8.4epss 0.01

    Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2013-2597HigKEVAug 31, 2014
    risk 0.67cvss 8.4epss 0.02

    Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an…

  • CVE-2020-3657CriNov 2, 2020
    risk 0.66cvss 9.8epss 0.28

    u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bound check.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial…

  • CVE-2020-11117CriSep 8, 2020
    risk 0.65cvss 9.8epss 0.20

    u'In the lbd service, an external user can issue a specially crafted debug command to overwrite arbitrary files with arbitrary content resulting in remote code execution.' in Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Wired Infrastructure and Networking in…

  • CVE-2025-27034CriSep 24, 2025
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while selecting the PLMN from SOR failed list.

  • CVE-2025-21483CriSep 24, 2025
    risk 0.64cvss 9.8epss 0.00

    Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.

  • CVE-2024-45569CriFeb 3, 2025
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while parsing the ML IE due to invalid frame content.

  • CVE-2018-11922CriNov 26, 2024
    risk 0.64cvss 9.8epss 0.00

    Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user.

  • CVE-2017-17772CriNov 26, 2024
    risk 0.64cvss 9.8epss 0.00

    In multiple functions that process 802.11 frames, out-of-bounds reads can occur due to insufficient validation.

  • CVE-2017-11076CriNov 26, 2024
    risk 0.64cvss 9.8epss 0.00

    On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder.

  • CVE-2024-33066CriOct 7, 2024
    risk 0.64cvss 9.8epss 0.01

    Memory corruption while redirecting log file to any file location with any file name.

  • CVE-2024-21473CriApr 1, 2024
    risk 0.64cvss 9.8epss 0.01

    Memory corruption while redirecting log file to any file location with any file name.

  • CVE-2023-43553CriMar 4, 2024
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.