VYPR

Vendor CVEs

Qualcomm

All CVEs

3,001 total · sorted by risk
  • CVE-2022-31885CriJun 28, 2022
    risk 0.69cvss 9.8epss 0.32

    Marval MSM v14.19.0.12476 is vulnerable to OS Command Injection due to the insecure handling of VBScripts.

  • CVE-2025-21479HigKEVJun 3, 2025
    risk 0.68cvss 8.6epss 0.01

    Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.

  • CVE-2025-21480HigKEVJun 3, 2025
    risk 0.68cvss 8.6epss 0.00

    Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.

  • CVE-1999-0006CriJul 14, 1998
    risk 0.68cvss 9.8epss 0.12

    Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command.

  • CVE-2023-33107HigKEVDec 5, 2023
    risk 0.67cvss 8.4epss 0.01

    Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

  • CVE-2023-33106HigKEVDec 5, 2023
    risk 0.67cvss 8.4epss 0.01

    Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.

  • CVE-2022-22071HigKEVJun 14, 2022
    risk 0.67cvss 8.4epss 0.00

    Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2021-1905HigKEVMay 7, 2021
    risk 0.67cvss 8.4epss 0.01

    Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2013-2597HigKEVAug 31, 2014
    risk 0.67cvss 8.4epss 0.02

    Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an…

  • CVE-2020-3657CriNov 2, 2020
    risk 0.66cvss 9.8epss 0.28

    u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bound check.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial…

  • CVE-2020-11117CriSep 8, 2020
    risk 0.65cvss 9.8epss 0.20

    u'In the lbd service, an external user can issue a specially crafted debug command to overwrite arbitrary files with arbitrary content resulting in remote code execution.' in Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Wired Infrastructure and Networking in…

  • CVE-2025-27034CriSep 24, 2025
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while selecting the PLMN from SOR failed list.

  • CVE-2025-21483CriSep 24, 2025
    risk 0.64cvss 9.8epss 0.00

    Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.

  • CVE-2024-45569CriFeb 3, 2025
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while parsing the ML IE due to invalid frame content.

  • CVE-2018-11922CriNov 26, 2024
    risk 0.64cvss 9.8epss 0.00

    Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user.

  • CVE-2017-17772CriNov 26, 2024
    risk 0.64cvss 9.8epss 0.00

    In multiple functions that process 802.11 frames, out-of-bounds reads can occur due to insufficient validation.

  • CVE-2017-11076CriNov 26, 2024
    risk 0.64cvss 9.8epss 0.00

    On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder.

  • CVE-2024-33066CriOct 7, 2024
    risk 0.64cvss 9.8epss 0.01

    Memory corruption while redirecting log file to any file location with any file name.

  • CVE-2024-21473CriApr 1, 2024
    risk 0.64cvss 9.8epss 0.01

    Memory corruption while redirecting log file to any file location with any file name.

  • CVE-2023-43553CriMar 4, 2024
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.

  • CVE-2023-43552CriMar 4, 2024
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while processing MBSSID beacon containing several subelement IE.

  • CVE-2023-28582CriMar 4, 2024
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake.

  • CVE-2023-33025CriJan 2, 2024
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in Data Modem when a non-standard SDP body, during a VOLTE call.

  • CVE-2023-33083CriDec 5, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory corruption in WLAN Host while processing RRM beacon on the AP.

  • CVE-2023-33082CriDec 5, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.

  • CVE-2023-33045CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.

  • CVE-2023-22388CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory Corruption in Multi-mode Call Processor while processing bit mask API.

  • CVE-2023-33028CriOct 3, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.

  • CVE-2023-24855CriOct 3, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory corruption in Modem while processing security related configuration before AS Security Exchange.

  • CVE-2023-28581CriSep 5, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in WLAN Firmware while parsing receieved GTK Keys in GTK KDE.

  • CVE-2023-28562CriSep 5, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while handling payloads from remote ESL.

  • CVE-2023-28561CriAug 8, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in QESL while processing payload from external ESL device to firmware.

  • CVE-2022-40510CriAug 8, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.

  • CVE-2022-33259CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption due to buffer copy without checking the size of input in modem while decoding raw SMS received.

  • CVE-2022-33211CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.00

    memory corruption in modem due to improper check while calculating size of serialized CoAP message

  • CVE-2022-25745CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in modem due to improper input validation while handling the incoming CoAP message

  • CVE-2022-25740CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of the iface

  • CVE-2022-25678CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory correction in modem due to buffer overwrite during coap connection

  • CVE-2022-33256CriMar 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory corruption due to improper validation of array index in Multi-mode call processor.

  • CVE-2022-40514CriFeb 12, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame.

  • CVE-2022-33279CriFeb 12, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption due to stack based buffer overflow in WLAN having invalid WNM frame length.

  • CVE-2022-25729CriFeb 12, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in modem due to improper length check while copying into memory

  • CVE-2022-22088CriJan 9, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory corruption in Bluetooth HOST due to buffer overflow while parsing the command response received from remote

  • CVE-2022-25727CriNov 15, 2022
    risk 0.64cvss 9.8epss 0.00

    Memory Corruption in modem due to improper length check while copying into memory in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music

  • CVE-2022-25748CriOct 19, 2022
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT,…

  • CVE-2022-25720CriOct 19, 2022
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in WLAN due to out of bound array access during connect/roaming in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon…

  • CVE-2022-25708CriSep 16, 2022
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in WLAN due to buffer copy without checking size of input while parsing keys in Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2022-22096CriSep 2, 2022
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in Bluetooth HOST due to stack-based buffer overflow when when extracting data using command length parameter in Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2022-31887CriJun 28, 2022
    risk 0.64cvss 9.8epss 0.02

    Marval MSM v14.19.0.12476 has a 0-Click Account Takeover vulnerability which allows an attacker to change any user's password in the organization, this means that the user can also escalate achieve Privilege Escalation by changing the administrator password.

  • CVE-2022-25651CriJun 14, 2022
    risk 0.64cvss 9.8epss 0.01

    Memory corruption in bluetooth host due to integer overflow while processing BT HFP-UNIT profile in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music

Page 1 of 61