Qualcomm
Qualcomm Incorporated is an American multinational technology corporation headquartered in San Diego, California.The company develops and designs technologies for global communications and computing, including next-generation mobile networks, smart devices, and semiconductors — such as mobile processors and artificial intelligence chips. The company holds essential patents for global mobile communication standards including 5G, 4G, CDMA2000, TD-SCDMA and WCDMA.
Products
2,935- 1,190 CVEs
- 1,168 CVEs
- 1,122 CVEs
- 1,121 CVEs
- 1,106 CVEs
- 1,050 CVEs
- 1,014 CVEs
- 968 CVEs
- 957 CVEs
- 947 CVEs
- 944 CVEs
- 938 CVEs
- 937 CVEs
- 904 CVEs
- 900 CVEs
- 900 CVEs
- 824 CVEs
- 811 CVEs
- 796 CVEs
- 778 CVEs
- 776 CVEs
- 769 CVEs
- 742 CVEs
- 739 CVEs
- 737 CVEs
- 736 CVEs
- 732 CVEs
- 723 CVEs
- 722 CVEs
- 720 CVEs
- View all 2,935 products →
Recent CVEs
3,001| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-31885 | Cri | 0.69 | 9.8 | 0.32 | Jun 28, 2022 | Marval MSM v14.19.0.12476 is vulnerable to OS Command Injection due to the insecure handling of VBScripts. | ||
| CVE-2025-21479 | Hig | 0.68 | 8.6 | 0.01 | KEV | Jun 3, 2025 | Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands. | |
| CVE-2025-21480 | Hig | 0.68 | 8.6 | 0.00 | KEV | Jun 3, 2025 | Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands. | |
| CVE-1999-0006 | Cri | 0.68 | 9.8 | 0.12 | Jul 14, 1998 | Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command. | ||
| CVE-2023-33107 | Hig | 0.67 | 8.4 | 0.01 | KEV | Dec 5, 2023 | Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call. | |
| CVE-2023-33106 | Hig | 0.67 | 8.4 | 0.01 | KEV | Dec 5, 2023 | Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND. | |
| CVE-2022-22071 | Hig | 0.67 | 8.4 | 0.00 | KEV | Jun 14, 2022 | Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &… | |
| CVE-2021-1905 | Hig | 0.67 | 8.4 | 0.01 | KEV | May 7, 2021 | Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon… | |
| CVE-2013-2597 | Hig | 0.67 | 8.4 | 0.02 | KEV | Aug 31, 2014 | Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an… | |
| CVE-2020-3657 | Cri | 0.66 | 9.8 | 0.28 | Nov 2, 2020 | u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bound check.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial… | ||
| CVE-2020-11117 | Cri | 0.65 | 9.8 | 0.20 | Sep 8, 2020 | u'In the lbd service, an external user can issue a specially crafted debug command to overwrite arbitrary files with arbitrary content resulting in remote code execution.' in Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Wired Infrastructure and Networking in… | ||
| CVE-2025-27034 | Cri | 0.64 | 9.8 | 0.00 | Sep 24, 2025 | Memory corruption while selecting the PLMN from SOR failed list. | ||
| CVE-2025-21483 | Cri | 0.64 | 9.8 | 0.00 | Sep 24, 2025 | Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs. | ||
| CVE-2024-45569 | Cri | 0.64 | 9.8 | 0.00 | Feb 3, 2025 | Memory corruption while parsing the ML IE due to invalid frame content. | ||
| CVE-2018-11922 | Cri | 0.64 | 9.8 | 0.00 | Nov 26, 2024 | Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user. | ||
| CVE-2017-17772 | Cri | 0.64 | 9.8 | 0.00 | Nov 26, 2024 | In multiple functions that process 802.11 frames, out-of-bounds reads can occur due to insufficient validation. | ||
| CVE-2017-11076 | Cri | 0.64 | 9.8 | 0.00 | Nov 26, 2024 | On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder. | ||
| CVE-2024-33066 | Cri | 0.64 | 9.8 | 0.01 | Oct 7, 2024 | Memory corruption while redirecting log file to any file location with any file name. | ||
| CVE-2024-21473 | Cri | 0.64 | 9.8 | 0.01 | Apr 1, 2024 | Memory corruption while redirecting log file to any file location with any file name. | ||
| CVE-2023-43553 | Cri | 0.64 | 9.8 | 0.00 | Mar 4, 2024 | Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE. |
- risk 0.69cvss 9.8epss 0.32
Marval MSM v14.19.0.12476 is vulnerable to OS Command Injection due to the insecure handling of VBScripts.
- risk 0.68cvss 8.6epss 0.01
Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
- risk 0.68cvss 8.6epss 0.00
Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
- risk 0.68cvss 9.8epss 0.12
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command.
- risk 0.67cvss 8.4epss 0.01
Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.
- risk 0.67cvss 8.4epss 0.01
Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.
- risk 0.67cvss 8.4epss 0.00
Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…
- risk 0.67cvss 8.4epss 0.01
Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…
- risk 0.67cvss 8.4epss 0.02
Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an…
- risk 0.66cvss 9.8epss 0.28
u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bound check.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial…
- risk 0.65cvss 9.8epss 0.20
u'In the lbd service, an external user can issue a specially crafted debug command to overwrite arbitrary files with arbitrary content resulting in remote code execution.' in Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Wired Infrastructure and Networking in…
- risk 0.64cvss 9.8epss 0.00
Memory corruption while selecting the PLMN from SOR failed list.
- risk 0.64cvss 9.8epss 0.00
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.
- risk 0.64cvss 9.8epss 0.00
Memory corruption while parsing the ML IE due to invalid frame content.
- risk 0.64cvss 9.8epss 0.00
Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user.
- risk 0.64cvss 9.8epss 0.00
In multiple functions that process 802.11 frames, out-of-bounds reads can occur due to insufficient validation.
- risk 0.64cvss 9.8epss 0.00
On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder.
- risk 0.64cvss 9.8epss 0.01
Memory corruption while redirecting log file to any file location with any file name.
- risk 0.64cvss 9.8epss 0.01
Memory corruption while redirecting log file to any file location with any file name.
- risk 0.64cvss 9.8epss 0.00
Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.