Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Srv1l
Total 103 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-21425 1 Qualcomm 66 Qam8255p, Qam8255p Firmware, Qam8295p and 63 more 2025-08-19 N/A 7.3 HIGH
Memory corruption may occur due top improper access control in HAB process.
CVE-2025-21431 1 Qualcomm 72 Qam8255p, Qam8255p Firmware, Qam8295p and 69 more 2025-08-19 N/A 5.5 MEDIUM
Information disclosure may be there when a guest VM is connected.
CVE-2025-21442 1 Qualcomm 52 Qam8255p, Qam8255p Firmware, Qam8295p and 49 more 2025-08-19 N/A 7.8 HIGH
Memory corruption while transmitting packet mapping information with invalid header payload size.
CVE-2025-21443 1 Qualcomm 72 Qam8255p, Qam8255p Firmware, Qam8295p and 69 more 2025-08-19 N/A 7.8 HIGH
Memory corruption while processing message content in eAVB.
CVE-2025-27072 1 Qualcomm 72 Qam8255p, Qam8255p Firmware, Qam8295p and 69 more 2025-08-18 N/A 5.5 MEDIUM
Information disclosure while processing a packet at EAVB BE side with invalid header length.
CVE-2024-45558 1 Qualcomm 366 Ar8035, Ar8035 Firmware, Csr8811 and 363 more 2025-08-11 N/A 7.5 HIGH
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
CVE-2024-33057 1 Qualcomm 342 Ar8035, Ar8035 Firmware, Csr8811 and 339 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location.
CVE-2024-38397 1 Qualcomm 232 Ar8035, Ar8035 Firmware, Fastconnect 6700 and 229 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parsing probe response and assoc response frame.
CVE-2025-27052 1 Qualcomm 312 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 309 more 2025-08-11 N/A 7.8 HIGH
Memory corruption while processing data packets in diag received from Unix clients.
CVE-2025-27042 1 Qualcomm 690 215 Mobile, 215 Mobile Firmware, 315 5g Iot Modem and 687 more 2025-08-11 N/A 7.8 HIGH
Memory corruption while processing video packets received from video firmware.
CVE-2024-49842 1 Qualcomm 358 Aqt1000, Aqt1000 Firmware, Ar8035 and 355 more 2025-08-11 N/A 7.8 HIGH
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
CVE-2025-21446 1 Qualcomm 480 Ar8035, Ar8035 Firmware, Ar9380 and 477 more 2025-08-11 N/A 7.5 HIGH
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
CVE-2024-33045 1 Qualcomm 360 Ar8035, Ar8035 Firmware, Csra6620 and 357 more 2025-08-11 N/A 8.4 HIGH
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
CVE-2024-53009 1 Qualcomm 378 Aqt1000, Aqt1000 Firmware, Ar8035 and 375 more 2025-08-11 N/A 5.3 MEDIUM
Memory corruption while operating the mailbox in Automotive.
CVE-2024-23369 1 Qualcomm 236 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 233 more 2025-08-11 N/A 7.8 HIGH
Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers.
CVE-2024-33073 1 Qualcomm 318 Ar8035, Ar8035 Firmware, Csr8811 and 315 more 2025-08-11 N/A 8.2 HIGH
Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
CVE-2024-53014 1 Qualcomm 502 215, 215 Firmware, 315 5g Iot Modem and 499 more 2025-08-11 N/A 7.8 HIGH
Memory corruption may occur while validating ports and channels in Audio driver.
CVE-2025-21454 1 Qualcomm 384 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9206 Lte Modem and 381 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while processing received beacon frame.
CVE-2024-45553 1 Qualcomm 256 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 253 more 2025-08-11 N/A 7.8 HIGH
Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global list while another thread is using it for a process-specific task, issues may arise.
CVE-2024-49844 1 Qualcomm 362 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 359 more 2025-08-11 N/A 7.8 HIGH
Memory corruption while triggering commands in the PlayReady Trusted application.