VYPR

Vendor CVEs

Qualcomm

All CVEs

3,001 total · sorted by risk
  • CVE-2018-5894MedJul 6, 2018
    risk 0.42cvss 6.5epss 0.01

    Improper Validation of Array Index in Multimedia While parsing an mp4 file in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, an out-of-bounds access can occur.

  • CVE-2017-9681MedMar 30, 2018
    risk 0.42cvss 6.5epss 0.00

    In Android before 2017-08-05 on Qualcomm MSM, Firefox OS for MSM, QRD Android, and all Android releases from CAF using the Linux kernel, if kernel memory address is passed from userspace through iris_vidioc_s_ext_ctrls ioctl, it will print kernel address data. A user could set…

  • CVE-2026-63883HigJul 19, 2026
    risk 0.40cvss 7.3epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: serial: qcom_geni: fix kfifo underflow when flush precedes DMA completion IRQ When uart_flush_buffer() runs before the DMA completion IRQ is delivered, the following race can occur (all steps serialized by…

  • CVE-2025-47406MedMay 4, 2026
    risk 0.40cvss 6.1epss 0.00

    Information Disclosure while processing IOCTL handler callbacks without verifying buffer size.

  • CVE-2025-47331MedJan 7, 2026
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while processing a firmware event.

  • CVE-2025-47362MedNov 4, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while processing message from client with invalid payload.

  • CVE-2025-27064MedNov 4, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while registering commands from clients with diag through diagHal.

  • CVE-2025-27045MedOct 9, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while processing batch command execution in Video driver.

  • CVE-2025-27036MedSep 24, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure when Video engine escape input data is less than expected minimum size.

  • CVE-2025-27033MedSep 24, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while running video usecase having rogue firmware.

  • CVE-2025-27030MedSep 24, 2025
    risk 0.40cvss 6.1epss 0.00

    information disclosure while invoking calibration data from user space to update firmware size.

  • CVE-2025-21457MedAug 6, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while opening a fastrpc session when domain is not sanitized.

  • CVE-2025-21433MedJul 8, 2025
    risk 0.40cvss 6.2epss 0.00

    Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.

  • CVE-2024-45551MedApr 7, 2025
    risk 0.40cvss 6.2epss 0.00

    Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verification failure, potentially leading to a user throttling bypass.

  • CVE-2024-38417MedFeb 3, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while processing IO control commands.

  • CVE-2024-38416MedFeb 3, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure during audio playback.

  • CVE-2024-38414MedFeb 3, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while processing information on firmware image during core initialization.

  • CVE-2024-43063MedJan 6, 2025
    risk 0.40cvss 6.1epss 0.00

    information disclosure while invoking the mailbox read API.

  • CVE-2024-33067MedJan 6, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.

  • CVE-2024-33037MedDec 2, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.

  • CVE-2024-38425MedOct 7, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while sending implicit broadcast containing APP launch information.

  • CVE-2024-23357MedAug 5, 2024
    risk 0.40cvss 6.2epss 0.00

    Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.

  • CVE-2024-21478MedJun 3, 2024
    risk 0.40cvss 6.2epss 0.00

    transient DOS when setting up a fence callback to free a KGSL memory entry object during DMA.

  • CVE-2023-43528MedMay 6, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.

  • CVE-2023-33065MedFeb 6, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in Audio while accessing AVCS services from ADSP payload.

  • CVE-2023-28569MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in WLAN HAL while handling command through WMI interfaces.

  • CVE-2023-28568MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in WLAN HAL when reception status handler is called.

  • CVE-2023-28566MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in WLAN HAL while handling the WMI state info command.

  • CVE-2023-28563MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in IOE Firmware while handling WMI command.

  • CVE-2023-28554MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information Disclosure in Qualcomm IPC while reading values from shared memory in VM.

  • CVE-2023-28553MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information Disclosure in WLAN Host when processing WMI event command.

  • CVE-2023-28571MedOct 3, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in WLAN HOST while processing the WLAN scan descriptor list during roaming scan.

  • CVE-2023-21624MedJul 4, 2023
    risk 0.40cvss 6.2epss 0.00

    Information disclosure in DSP Services while loading dynamic module.

  • CVE-2022-40533MedJun 6, 2023
    risk 0.40cvss 6.2epss 0.00

    Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request.

  • CVE-2022-22075MedMar 10, 2023
    risk 0.40cvss 6.2epss 0.00

    Information Disclosure in Graphics during GPU context switch.

  • CVE-2022-25725MedJan 9, 2023
    risk 0.40cvss 6.2epss 0.00

    Denial of service in MODEM due to improper pointer handling

  • CVE-2022-25679MedNov 15, 2022
    risk 0.40cvss 6.2epss 0.00

    Denial of service in video due to improper access control in broadcast receivers in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2022-25664MedOct 19, 2022
    risk 0.40cvss 6.2epss 0.00

    Information disclosure due to exposure of information while GPU reads the data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2022-22101MedSep 2, 2022
    risk 0.40cvss 6.2epss 0.00

    Denial of service in multimedia due to uncontrolled resource consumption while parsing an incoming HAB message in Snapdragon Auto

  • CVE-2021-35135MedSep 2, 2022
    risk 0.40cvss 6.2epss 0.00

    A null pointer dereference may potentially occur during RSA key import in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-35079MedJun 14, 2022
    risk 0.40cvss 6.2epss 0.00

    Improper validation of permissions for third party application accessing Telephony service API can lead to information disclosure in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-30314MedJan 13, 2022
    risk 0.40cvss 6.2epss 0.00

    Lack of validation for third party application accessing the service can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2021-1969MedOct 20, 2021
    risk 0.40cvss 6.2epss 0.00

    Improper validation of kernel buffer address while copying information back to user buffer can lead to kernel memory information exposure to user space in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice…

  • CVE-2021-1968MedOct 20, 2021
    risk 0.40cvss 6.2epss 0.00

    Improper validation of kernel buffer address while copying information back to user buffer can lead to kernel memory information exposure to user space in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice…

  • CVE-2021-1929MedSep 8, 2021
    risk 0.40cvss 6.2epss 0.00

    Lack of strict validation of bootmode can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2021-1904MedSep 8, 2021
    risk 0.40cvss 6.2epss 0.01

    Child process can leak information from parent process due to numeric pids are getting compared and these pid can be reused in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2020-11254MedMay 7, 2021
    risk 0.40cvss 6.2epss 0.00

    Memory corruption during buffer allocation due to dereferencing session ctx pointer without checking if pointer is valid in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2023-28586MedDec 5, 2023
    risk 0.39cvss 6.0epss 0.00

    Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.

  • CVE-2022-33216MedFeb 12, 2023
    risk 0.39cvss 6.0epss 0.00

    Transient Denial-of-service in Automotive due to improper input validation while parsing ELF file.

  • CVE-2022-25722MedJan 9, 2023
    risk 0.39cvss 6.0epss 0.00

    Information exposure in DSP services due to improper handling of freeing memory

Page 54 of 61