Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Snapdragon Xr2 5g Platform Firmware
Total 173 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-43067 1 Qualcomm 116 C-v2x 9150, C-v2x 9150 Firmware, Fastconnect 6800 and 113 more 2025-08-20 N/A 7.8 HIGH
Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shared memory.
CVE-2024-53016 1 Qualcomm 68 Fastconnect 6800, Fastconnect 6800 Firmware, Fastconnect 6900 and 65 more 2025-08-20 N/A 6.6 MEDIUM
Memory corruption while processing I2C settings in Camera driver.
CVE-2024-53013 1 Qualcomm 120 C-v2x 9150, C-v2x 9150 Firmware, Fastconnect 6800 and 117 more 2025-08-20 N/A 6.6 MEDIUM
Memory corruption may occur while processing voice call registration with user.
CVE-2025-27073 1 Qualcomm 340 Ar8035, Ar8035 Firmware, Csr8811 and 337 more 2025-08-20 N/A 7.5 HIGH
Transient DOS while creating NDP instance.
CVE-2025-27065 1 Qualcomm 300 Ar8035, Ar8035 Firmware, Fastconnect 6800 and 297 more 2025-08-20 N/A 7.5 HIGH
Transient DOS while processing a frame with malformed shared-key descriptor.
CVE-2025-21455 1 Qualcomm 58 Fastconnect 6800, Fastconnect 6800 Firmware, Fastconnect 6900 and 55 more 2025-08-20 N/A 7.8 HIGH
Memory corruption while submitting blob data to kernel space though IOCTL.
CVE-2025-21452 1 Qualcomm 160 315 5g Iot Modem, 315 5g Iot Modem Firmware, Ar8035 and 157 more 2025-08-20 N/A 7.5 HIGH
Transient DOS while processing a random-access response (RAR) with an invalid PDU length on LTE network.
CVE-2025-21474 1 Qualcomm 90 Fastconnect 6800, Fastconnect 6800 Firmware, Fastconnect 6900 and 87 more 2025-08-19 N/A 7.8 HIGH
Memory corruption while processing commands from A2dp sink command queue.
CVE-2025-27071 1 Qualcomm 68 Fastconnect 6800, Fastconnect 6800 Firmware, Fastconnect 6900 and 65 more 2025-08-19 N/A 7.3 HIGH
Memory corruption while processing specific files in Powerline Communication Firmware.
CVE-2024-21459 1 Qualcomm 350 Ar8035, Ar8035 Firmware, Ar9380 and 347 more 2025-08-15 N/A 6.5 MEDIUM
Information disclosure while handling beacon or probe response frame in STA.
CVE-2023-43511 1 Qualcomm 712 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9206 Lte Modem and 709 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
CVE-2024-21481 1 Qualcomm 332 Aqt1000, Aqt1000 Firmware, Ar8035 and 329 more 2025-08-11 N/A 8.4 HIGH
Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager.
CVE-2023-24852 1 Qualcomm 542 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 539 more 2025-08-11 N/A 8.4 HIGH
Memory Corruption in Core due to secure memory access by user while loading modem image.
CVE-2023-33047 1 Qualcomm 356 Ar8035, Ar8035 Firmware, Ar9380 and 353 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in WLAN Firmware while parsing no-inherit IES.
CVE-2023-33064 1 Qualcomm 178 Aqt1000, Aqt1000 Firmware, Ar8035 and 175 more 2025-08-11 N/A 5.5 MEDIUM
Transient DOS in Audio when invoking callback function of ASM driver.
CVE-2023-33027 1 Qualcomm 656 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8098 and 653 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in WLAN Firmware while parsing rsn ies.
CVE-2023-33077 1 Qualcomm 192 Aqt1000, Aqt1000 Firmware, Ar8035 and 189 more 2025-08-11 N/A 6.7 MEDIUM
Memory corruption in HLOS while converting from authorization token to HIDL vector.
CVE-2023-28587 1 Qualcomm 380 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 377 more 2025-08-11 N/A 7.8 HIGH
Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.
CVE-2023-33028 1 Qualcomm 352 Ar8035, Ar8035 Firmware, Ar9380 and 349 more 2025-08-11 N/A 9.8 CRITICAL
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
CVE-2023-33118 1 Qualcomm 271 Ar8035, Ar8035 Firmware, Csra6620 and 268 more 2025-08-11 N/A 7.8 HIGH
Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL.