Vendor CVEs
Qualcomm
All CVEs
3,001 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-47350 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while handling concurrent memory mapping and unmapping requests from a user-space application. | ||
| CVE-2025-47323 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while routing GPR packets between user and root when handling large data packet. | ||
| CVE-2025-47322 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while handling IOCTL calls to set mode. | ||
| CVE-2025-47321 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while copying packets received from unix clients. | ||
| CVE-2025-47320 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption while processing MFC channel configuration during music playback. | ||
| CVE-2025-27063 | Hig | 0.51 | 7.8 | 0.00 | Dec 18, 2025 | Memory corruption during video playback when video session open fails with time out error. | ||
| CVE-2025-47368 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing. | ||
| CVE-2025-47367 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while accessing a buffer during IOCTL processing. | ||
| CVE-2025-47365 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while processing large input data from a remote source via a communication interface. | ||
| CVE-2025-47361 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption when triggering a subsystem crash with an out-of-range identifier. | ||
| CVE-2025-47360 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while processing client message during device management. | ||
| CVE-2025-47353 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while processing request sent from GVM. | ||
| CVE-2025-47352 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while processing audio streaming operations. | ||
| CVE-2025-27070 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2025 | Memory corruption while performing encryption and decryption commands. | ||
| CVE-2025-47355 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while invoking remote procedure IOCTL calls. | ||
| CVE-2025-47354 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while allocating buffers in DSP service. | ||
| CVE-2025-47351 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing user buffers. | ||
| CVE-2025-47349 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing an escape call. | ||
| CVE-2025-47347 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing control commands in the virtual memory management interface. | ||
| CVE-2025-47341 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | memory corruption while processing an image encoding completion event. | ||
| CVE-2025-47340 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing IOCTL call to get the mapping. | ||
| CVE-2025-47338 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing escape commands from userspace. | ||
| CVE-2025-27054 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing a malformed license file during reboot. | ||
| CVE-2025-27053 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption during PlayReady APP usecase while processing TA commands. | ||
| CVE-2025-27048 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing camera platform driver IOCTL calls. | ||
| CVE-2025-43993 | Hig | 0.51 | 7.8 | 0.00 | Sep 25, 2025 | Dell Wireless 5932e and Qualcomm Snapdragon X62 Firmware and GNSS/GPS Driver, versions prior to 3.2.0.22 contain an Unquoted Search Path or Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code Execution. | ||
| CVE-2025-47329 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while handling invalid inputs in application info setup. | ||
| CVE-2025-47327 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while encoding the image data. | ||
| CVE-2025-47317 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption due to global buffer overflow when a test command uses an invalid payload type. | ||
| CVE-2025-47316 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption due to double free when multiple threads race to set the timestamp store. | ||
| CVE-2025-47315 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while handling repeated memory unmap requests from guest VM. | ||
| CVE-2025-47314 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while processing data sent by FE driver. | ||
| CVE-2025-27077 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while processing message in guest VM. | ||
| CVE-2025-27037 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while processing config_dev IOCTL when camera kernel driver drops its reference to CPU buffers. | ||
| CVE-2025-27032 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency. | ||
| CVE-2025-21481 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while performing private key encryption in trusted application. | ||
| CVE-2025-21476 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption when passing parameters to the Trusted Virtual Machine during the handshake. | ||
| CVE-2025-27076 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing simultaneous requests via escape path. | ||
| CVE-2025-27075 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing IOCTL command with larger buffer in Bluetooth Host. | ||
| CVE-2025-27069 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing DDI command calls. | ||
| CVE-2025-27068 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing an IOCTL command with an arbitrary address. | ||
| CVE-2025-27067 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing DDI call with invalid buffer. | ||
| CVE-2025-27062 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while handling client exceptions, allowing unauthorized channel access. | ||
| CVE-2025-21474 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing commands from A2dp sink command queue. | ||
| CVE-2025-21473 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption when using Virtual cdm (Camera Data Mover) to write registers. | ||
| CVE-2025-21461 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption when programming registers through virtual CDM. | ||
| CVE-2025-21458 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption when IOCTL interface is called to map and unmap buffers simultaneously. | ||
| CVE-2025-21456 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing IOCTL command when multiple threads are called to map/unmap buffer concurrently. | ||
| CVE-2025-21455 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while submitting blob data to kernel space though IOCTL. | ||
| CVE-2025-27061 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2025 | Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware. |
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling concurrent memory mapping and unmapping requests from a user-space application.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while routing GPR packets between user and root when handling large data packet.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling IOCTL calls to set mode.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while copying packets received from unix clients.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing MFC channel configuration during music playback.
- risk 0.51cvss 7.8epss 0.00
Memory corruption during video playback when video session open fails with time out error.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while accessing a buffer during IOCTL processing.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing large input data from a remote source via a communication interface.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when triggering a subsystem crash with an out-of-range identifier.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing client message during device management.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing request sent from GVM.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing audio streaming operations.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while performing encryption and decryption commands.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while invoking remote procedure IOCTL calls.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while allocating buffers in DSP service.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing user buffers.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing an escape call.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing control commands in the virtual memory management interface.
- risk 0.51cvss 7.8epss 0.00
memory corruption while processing an image encoding completion event.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing IOCTL call to get the mapping.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing escape commands from userspace.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing a malformed license file during reboot.
- risk 0.51cvss 7.8epss 0.00
Memory corruption during PlayReady APP usecase while processing TA commands.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing camera platform driver IOCTL calls.
- risk 0.51cvss 7.8epss 0.00
Dell Wireless 5932e and Qualcomm Snapdragon X62 Firmware and GNSS/GPS Driver, versions prior to 3.2.0.22 contain an Unquoted Search Path or Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code Execution.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling invalid inputs in application info setup.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while encoding the image data.
- risk 0.51cvss 7.8epss 0.00
Memory corruption due to global buffer overflow when a test command uses an invalid payload type.
- risk 0.51cvss 7.8epss 0.00
Memory corruption due to double free when multiple threads race to set the timestamp store.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling repeated memory unmap requests from guest VM.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing data sent by FE driver.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing message in guest VM.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing config_dev IOCTL when camera kernel driver drops its reference to CPU buffers.
- risk 0.51cvss 7.8epss 0.00
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while performing private key encryption in trusted application.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when passing parameters to the Trusted Virtual Machine during the handshake.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing simultaneous requests via escape path.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing IOCTL command with larger buffer in Bluetooth Host.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing DDI command calls.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing an IOCTL command with an arbitrary address.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing DDI call with invalid buffer.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling client exceptions, allowing unauthorized channel access.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing commands from A2dp sink command queue.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when using Virtual cdm (Camera Data Mover) to write registers.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when programming registers through virtual CDM.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when IOCTL interface is called to map and unmap buffers simultaneously.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing IOCTL command when multiple threads are called to map/unmap buffer concurrently.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while submitting blob data to kernel space though IOCTL.
- risk 0.51cvss 7.8epss 0.00
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.
Page 22 of 61