Vendor CVEs
Qualcomm
All CVEs
3,013 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-47348 | Hig | 0.51 | 7.8 | 0.00 | Jan 7, 2026 | Memory corruption while processing identity credential operations in the trusted application. | ||
| CVE-2025-47346 | Hig | 0.51 | 7.8 | 0.00 | Jan 7, 2026 | Memory corruption while processing a secure logging command in the trusted application. | ||
| CVE-2025-47343 | Hig | 0.51 | 7.8 | 0.00 | Jan 7, 2026 | Memory corruption while processing a video session to set video parameters. | ||
| CVE-2025-47339 | Hig | 0.51 | 7.8 | 0.00 | Jan 7, 2026 | Memory corruption while deinitializing a HDCP session. | ||
| CVE-2025-47387 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory Corruption when processing IOCTLs for JPEG data without verification. | ||
| CVE-2025-47382 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while loading an invalid firmware in boot loader. | ||
| CVE-2025-47350 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while handling concurrent memory mapping and unmapping requests from a user-space application. | ||
| CVE-2025-47323 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while routing GPR packets between user and root when handling large data packet. | ||
| CVE-2025-47322 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while handling IOCTL calls to set mode. | ||
| CVE-2025-47321 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while copying packets received from unix clients. | ||
| CVE-2025-47320 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while processing MFC channel configuration during music playback. | ||
| CVE-2025-27063 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption during video playback when video session open fails with time out error. | ||
| CVE-2025-47368 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing. | ||
| CVE-2025-47367 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while accessing a buffer during IOCTL processing. | ||
| CVE-2025-47365 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while processing large input data from a remote source via a communication interface. | ||
| CVE-2025-47361 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption when triggering a subsystem crash with an out-of-range identifier. | ||
| CVE-2025-47360 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while processing client message during device management. | ||
| CVE-2025-47353 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while processing request sent from GVM. | ||
| CVE-2025-47352 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while processing audio streaming operations. | ||
| CVE-2025-27070 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while performing encryption and decryption commands. | ||
| CVE-2025-47355 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while invoking remote procedure IOCTL calls. | ||
| CVE-2025-47354 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while allocating buffers in DSP service. | ||
| CVE-2025-47351 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing user buffers. | ||
| CVE-2025-47349 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing an escape call. | ||
| CVE-2025-47347 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing control commands in the virtual memory management interface. | ||
| CVE-2025-47341 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | memory corruption while processing an image encoding completion event. | ||
| CVE-2025-47340 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing IOCTL call to get the mapping. | ||
| CVE-2025-47338 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing escape commands from userspace. | ||
| CVE-2025-27054 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing a malformed license file during reboot. | ||
| CVE-2025-27053 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption during PlayReady APP usecase while processing TA commands. | ||
| CVE-2025-27048 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing camera platform driver IOCTL calls. | ||
| CVE-2025-43993 | Hig | 0.51 | 7.8 | 0.00 | Sep 25, 2025 | Dell Wireless 5932e and Qualcomm Snapdragon X62 Firmware and GNSS/GPS Driver, versions prior to 3.2.0.22 contain an Unquoted Search Path or Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code Execution. | ||
| CVE-2025-47329 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while handling invalid inputs in application info setup. | ||
| CVE-2025-47327 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while encoding the image data. | ||
| CVE-2025-47317 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption due to global buffer overflow when a test command uses an invalid payload type. | ||
| CVE-2025-47316 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption due to double free when multiple threads race to set the timestamp store. | ||
| CVE-2025-47315 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while handling repeated memory unmap requests from guest VM. | ||
| CVE-2025-47314 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while processing data sent by FE driver. | ||
| CVE-2025-27077 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while processing message in guest VM. | ||
| CVE-2025-27037 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while processing config_dev IOCTL when camera kernel driver drops its reference to CPU buffers. | ||
| CVE-2025-27032 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency. | ||
| CVE-2025-21481 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while performing private key encryption in trusted application. | ||
| CVE-2025-21476 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption when passing parameters to the Trusted Virtual Machine during the handshake. | ||
| CVE-2025-27076 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing simultaneous requests via escape path. | ||
| CVE-2025-27075 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing IOCTL command with larger buffer in Bluetooth Host. | ||
| CVE-2025-27069 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing DDI command calls. | ||
| CVE-2025-27068 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing an IOCTL command with an arbitrary address. | ||
| CVE-2025-27067 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing DDI call with invalid buffer. | ||
| CVE-2025-27062 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while handling client exceptions, allowing unauthorized channel access. | ||
| CVE-2025-21474 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing commands from A2dp sink command queue. |
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing identity credential operations in the trusted application.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing a secure logging command in the trusted application.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing a video session to set video parameters.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while deinitializing a HDCP session.
- risk 0.51cvss 7.8epss 0.00
Memory Corruption when processing IOCTLs for JPEG data without verification.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while loading an invalid firmware in boot loader.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling concurrent memory mapping and unmapping requests from a user-space application.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while routing GPR packets between user and root when handling large data packet.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling IOCTL calls to set mode.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while copying packets received from unix clients.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing MFC channel configuration during music playback.
- risk 0.51cvss 7.8epss 0.00
Memory corruption during video playback when video session open fails with time out error.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while accessing a buffer during IOCTL processing.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing large input data from a remote source via a communication interface.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when triggering a subsystem crash with an out-of-range identifier.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing client message during device management.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing request sent from GVM.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing audio streaming operations.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while performing encryption and decryption commands.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while invoking remote procedure IOCTL calls.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while allocating buffers in DSP service.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing user buffers.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing an escape call.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing control commands in the virtual memory management interface.
- risk 0.51cvss 7.8epss 0.00
memory corruption while processing an image encoding completion event.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing IOCTL call to get the mapping.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing escape commands from userspace.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing a malformed license file during reboot.
- risk 0.51cvss 7.8epss 0.00
Memory corruption during PlayReady APP usecase while processing TA commands.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing camera platform driver IOCTL calls.
- risk 0.51cvss 7.8epss 0.00
Dell Wireless 5932e and Qualcomm Snapdragon X62 Firmware and GNSS/GPS Driver, versions prior to 3.2.0.22 contain an Unquoted Search Path or Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code Execution.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling invalid inputs in application info setup.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while encoding the image data.
- risk 0.51cvss 7.8epss 0.00
Memory corruption due to global buffer overflow when a test command uses an invalid payload type.
- risk 0.51cvss 7.8epss 0.00
Memory corruption due to double free when multiple threads race to set the timestamp store.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling repeated memory unmap requests from guest VM.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing data sent by FE driver.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing message in guest VM.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing config_dev IOCTL when camera kernel driver drops its reference to CPU buffers.
- risk 0.51cvss 7.8epss 0.00
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while performing private key encryption in trusted application.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when passing parameters to the Trusted Virtual Machine during the handshake.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing simultaneous requests via escape path.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing IOCTL command with larger buffer in Bluetooth Host.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing DDI command calls.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing an IOCTL command with an arbitrary address.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing DDI call with invalid buffer.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling client exceptions, allowing unauthorized channel access.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing commands from A2dp sink command queue.
Page 22 of 61