Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Qca6431 Firmware
Total 421 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-43533 1 Qualcomm 476 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 473 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.
CVE-2023-33072 1 Qualcomm 490 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 487 more 2025-08-11 N/A 9.3 CRITICAL
Memory corruption in Core while processing control functions.
CVE-2023-24843 1 Qualcomm 132 315 5g Iot Modem, 315 5g Iot Modem Firmware, Ar8035 and 129 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in Modem while triggering a camping on an 5G cell.
CVE-2023-33062 1 Qualcomm 580 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 577 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in WLAN Firmware while parsing a BTM request.
CVE-2025-21446 1 Qualcomm 480 Ar8035, Ar8035 Firmware, Ar9380 and 477 more 2025-08-11 N/A 7.5 HIGH
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
CVE-2023-33109 1 Qualcomm 620 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 617 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
CVE-2023-21633 1 Qualcomm 194 Apq8064au, Apq8064au Firmware, Aqt1000 and 191 more 2025-08-11 N/A 6.7 MEDIUM
Memory Corruption in Linux while processing QcRilRequestImsRegisterMultiIdentityMessage request.
CVE-2023-21629 1 Qualcomm 424 205, 205 Firmware, 215 and 421 more 2025-08-11 N/A 6.8 MEDIUM
Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.
CVE-2023-28588 1 Qualcomm 428 Apq8017, Apq8017 Firmware, Apq8064au and 425 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in Bluetooth Host while rfc slot allocation.
CVE-2023-33042 1 Qualcomm 148 315 5g Iot Modem, 315 5g Iot Modem Firmware, Ar8035 and 145 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in Modem after RRC Setup message is received.
CVE-2024-53009 1 Qualcomm 378 Aqt1000, Aqt1000 Firmware, Ar8035 and 375 more 2025-08-11 N/A 5.3 MEDIUM
Memory corruption while operating the mailbox in Automotive.
CVE-2024-23369 1 Qualcomm 236 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 233 more 2025-08-11 N/A 7.8 HIGH
Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers.
CVE-2023-33049 1 Qualcomm 202 315 5g Iot Modem, 315 5g Iot Modem Firmware, Ar8035 and 199 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage.
CVE-2023-43536 1 Qualcomm 618 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 615 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parse fils IE with length equal to 1.
CVE-2023-22667 1 Qualcomm 410 205, 205 Firmware, 215 and 407 more 2025-08-11 N/A 8.4 HIGH
Memory Corruption in Audio while allocating the ion buffer during the music playback.
CVE-2023-43529 1 Qualcomm 322 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 319 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while processing IKEv2 Informational request messages, when a malformed fragment packet is received.
CVE-2025-21433 1 Qualcomm 550 215 Mobile, 215 Mobile Firmware, Apq8017 and 547 more 2025-08-11 N/A 6.2 MEDIUM
Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.
CVE-2023-33114 1 Qualcomm 224 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 221 more 2025-08-11 N/A 8.4 HIGH
Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time.
CVE-2023-28587 1 Qualcomm 380 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 377 more 2025-08-11 N/A 7.8 HIGH
Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.
CVE-2023-33023 1 Qualcomm 576 215 Mobile, 215 Mobile Firmware, 315 5g Iot and 573 more 2025-08-11 N/A 8.4 HIGH
Memory corruption while processing finish_sign command to pass a rsp buffer.