Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Snapdragon X75 5g Modem-rf System
Total 139 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-33031 1 Qualcomm 330 Apq5053-aa, Apq5053-aa Firmware, Apq8009 and 327 more 2025-08-11 N/A 7.8 HIGH
Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.
CVE-2023-28588 1 Qualcomm 428 Apq8017, Apq8017 Firmware, Apq8064au and 425 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in Bluetooth Host while rfc slot allocation.
CVE-2023-28570 1 Qualcomm 168 Aqt1000, Aqt1000 Firmware, Ar8035 and 165 more 2025-08-11 N/A 7.8 HIGH
Memory corruption while processing audio effects.
CVE-2023-28551 1 Qualcomm 496 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 493 more 2025-08-11 N/A 7.8 HIGH
Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.
CVE-2023-33029 1 Qualcomm 264 Apq8009, Apq8009 Firmware, Ar8035 and 261 more 2025-08-11 N/A 7.8 HIGH
Memory corruption in DSP Service during a remote call from HLOS to DSP.
CVE-2024-23369 1 Qualcomm 236 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 233 more 2025-08-11 N/A 7.8 HIGH
Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers.
CVE-2023-28556 1 Qualcomm 452 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 449 more 2025-08-11 N/A 7.8 HIGH
Cryptographic issue in HLOS during key management.
CVE-2023-28539 1 Qualcomm 314 Ar8035, Ar8035 Firmware, Ar9380 and 311 more 2025-08-11 N/A 7.8 HIGH
Memory corruption in WLAN Host when the firmware invokes multiple WMI Service Available command.
CVE-2024-33050 1 Qualcomm 514 Ar8035, Ar8035 Firmware, Ar9380 and 511 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.
CVE-2023-33027 1 Qualcomm 656 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8098 and 653 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in WLAN Firmware while parsing rsn ies.
CVE-2023-43536 1 Qualcomm 618 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 615 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parse fils IE with length equal to 1.
CVE-2023-24852 1 Qualcomm 542 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 539 more 2025-08-11 N/A 7.8 HIGH
Memory Corruption in Core due to secure memory access by user while loading modem image.
CVE-2023-33118 1 Qualcomm 271 Ar8035, Ar8035 Firmware, Csra6620 and 268 more 2025-08-11 N/A 7.8 HIGH
Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL.
CVE-2023-33079 1 Qualcomm 288 Apq5053-aa, Apq5053-aa Firmware, Ar8035 and 285 more 2025-08-11 N/A 7.8 HIGH
Memory corruption in Audio while running invalid audio recording from ADSP.
CVE-2024-49846 1 Qualcomm 62 Ar8035, Ar8035 Firmware, Fastconnect 7800 and 59 more 2025-05-09 N/A 9.1 CRITICAL
Memory corruption while decoding of OTA messages from T3448 IE.
CVE-2024-38404 1 Qualcomm 80 Ar8035, Ar8035 Firmware, Fastconnect 7800 and 77 more 2025-02-05 N/A 7.5 HIGH
Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.
CVE-2024-33063 1 Qualcomm 248 Ar8035, Ar8035 Firmware, Fastconnect 6900 and 245 more 2024-12-12 N/A N/A
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside which this element is present.
CVE-2024-33056 1 Qualcomm 658 205 Mobile Platform, 205 Mobile Platform Firmware, 315 5g Iot Modem and 655 more 2024-12-12 N/A 7.8 HIGH
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
CVE-2024-33044 1 Qualcomm 422 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 419 more 2024-12-12 N/A 7.8 HIGH
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
CVE-2024-33012 1 Qualcomm 498 Ar8035, Ar8035 Firmware, Ar9380 and 495 more 2024-11-26 N/A N/A
Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon.