Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Srv1m
Total 157 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-21425 1 Qualcomm 66 Qam8255p, Qam8255p Firmware, Qam8295p and 63 more 2025-08-19 N/A 7.3 HIGH
Memory corruption may occur due top improper access control in HAB process.
CVE-2025-21431 1 Qualcomm 72 Qam8255p, Qam8255p Firmware, Qam8295p and 69 more 2025-08-19 N/A 5.5 MEDIUM
Information disclosure may be there when a guest VM is connected.
CVE-2025-21442 1 Qualcomm 52 Qam8255p, Qam8255p Firmware, Qam8295p and 49 more 2025-08-19 N/A 7.8 HIGH
Memory corruption while transmitting packet mapping information with invalid header payload size.
CVE-2025-21443 1 Qualcomm 72 Qam8255p, Qam8255p Firmware, Qam8295p and 69 more 2025-08-19 N/A 7.8 HIGH
Memory corruption while processing message content in eAVB.
CVE-2025-27072 1 Qualcomm 72 Qam8255p, Qam8255p Firmware, Qam8295p and 69 more 2025-08-18 N/A 5.5 MEDIUM
Information disclosure while processing a packet at EAVB BE side with invalid header length.
CVE-2024-21459 1 Qualcomm 350 Ar8035, Ar8035 Firmware, Ar9380 and 347 more 2025-08-15 N/A 6.5 MEDIUM
Information disclosure while handling beacon or probe response frame in STA.
CVE-2024-21475 1 Qualcomm 472 215 Mobile, 215 Mobile Firmware, 315 5g Iot Modem and 469 more 2025-08-11 N/A 7.8 HIGH
Memory corruption when the payload received from firmware is not as per the expected protocol size.
CVE-2024-45558 1 Qualcomm 366 Ar8035, Ar8035 Firmware, Csr8811 and 363 more 2025-08-11 N/A 7.5 HIGH
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
CVE-2024-23351 1 Qualcomm 188 Fastconnect 6200, Fastconnect 6200 Firmware, Fastconnect 6700 and 185 more 2025-08-11 N/A 8.4 HIGH
Memory corruption as GPU registers beyond the last protected range can be accessed through LPAC submissions.
CVE-2023-33065 1 Qualcomm 208 Aqt1000, Aqt1000 Firmware, Ar8035 and 205 more 2025-08-11 N/A 6.1 MEDIUM
Information disclosure in Audio while accessing AVCS services from ADSP payload.
CVE-2023-33067 1 Qualcomm 226 9206 Lte Modem, 9206 Lte Modem Firmware, Aqt1000 and 223 more 2025-08-11 N/A 6.7 MEDIUM
Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.
CVE-2023-43522 1 Qualcomm 572 Aqt1000, Aqt1000 Firmware, Ar8035 and 569 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
CVE-2023-43520 1 Qualcomm 140 Ar8035, Ar8035 Firmware, Fastconnect 6900 and 137 more 2025-08-11 N/A 8.6 HIGH
Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.
CVE-2024-21471 1 Qualcomm 350 205 Mobile, 205 Mobile Firmware, 215 Mobile and 347 more 2025-08-11 N/A 8.4 HIGH
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
CVE-2023-33068 1 Qualcomm 226 9206 Lte Modem, 9206 Lte Modem Firmware, Aqt1000 and 223 more 2025-08-11 N/A 6.7 MEDIUM
Memory corruption in Audio while processing IIR config data from AFE calibration block.
CVE-2024-33057 1 Qualcomm 342 Ar8035, Ar8035 Firmware, Csr8811 and 339 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location.
CVE-2024-38397 1 Qualcomm 232 Ar8035, Ar8035 Firmware, Fastconnect 6700 and 229 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parsing probe response and assoc response frame.
CVE-2025-27052 1 Qualcomm 312 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 309 more 2025-08-11 N/A 7.8 HIGH
Memory corruption while processing data packets in diag received from Unix clients.
CVE-2025-27042 1 Qualcomm 690 215 Mobile, 215 Mobile Firmware, 315 5g Iot Modem and 687 more 2025-08-11 N/A 7.8 HIGH
Memory corruption while processing video packets received from video firmware.
CVE-2023-43536 1 Qualcomm 618 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 615 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parse fils IE with length equal to 1.