Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Srv1l Firmware
Total 98 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-49835 1 Qualcomm 424 Aqt1000, Aqt1000 Firmware, Ar8035 and 421 more 2025-05-09 N/A 7.8 HIGH
Memory corruption while reading secure file.
CVE-2024-49845 1 Qualcomm 292 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 289 more 2025-05-09 N/A 7.8 HIGH
Memory corruption during the FRS UDS generation process.
CVE-2025-21460 1 Qualcomm 72 Qam8255p, Qam8255p Firmware, Qam8295p and 69 more 2025-05-09 N/A 7.8 HIGH
Memory corruption while processing a message, when the buffer is controlled by a Guest VM, the value can be changed continuously.
CVE-2024-53031 1 Qualcomm 52 Qam8255p, Qam8255p Firmware, Qam8295p and 49 more 2025-03-07 N/A 7.8 HIGH
Memory corruption while reading a type value from a buffer controlled by the Guest Virtual Machine.
CVE-2024-53032 1 Qualcomm 52 Qam8255p, Qam8255p Firmware, Qam8295p and 49 more 2025-03-07 N/A 7.8 HIGH
Memory corruption may occur in keyboard virtual device due to guest VM interaction.
CVE-2024-53030 1 Qualcomm 88 Msm8996au, Msm8996au Firmware, Qam8255p and 85 more 2025-03-07 N/A 7.8 HIGH
Memory corruption while processing input message passed from FE driver.
CVE-2024-53022 1 Qualcomm 46 Qam8255p, Qam8255p Firmware, Qam8295p and 43 more 2025-03-06 N/A 7.8 HIGH
Memory corruption may occur during communication between primary and guest VM.
CVE-2024-49837 1 Qualcomm 52 Qam8255p, Qam8255p Firmware, Qam8295p and 49 more 2025-02-05 N/A 7.8 HIGH
Memory corruption while reading CPU state data during guest VM suspend.
CVE-2024-49838 1 Qualcomm 338 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 335 more 2025-02-05 N/A 8.2 HIGH
Information disclosure while parsing the OCI IE with invalid length.
CVE-2024-45584 1 Qualcomm 248 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 245 more 2025-02-05 N/A 7.8 HIGH
Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace.
CVE-2024-38420 1 Qualcomm 320 Aqt1000, Aqt1000 Firmware, Ar8035 and 317 more 2025-02-05 N/A 8.8 HIGH
Memory corruption while configuring a Hypervisor based input virtual device.
CVE-2024-45569 1 Qualcomm 348 Ar8035, Ar8035 Firmware, Csr8811 and 345 more 2025-02-05 N/A 9.8 CRITICAL
Memory corruption while parsing the ML IE due to invalid frame content.
CVE-2024-45555 1 Qualcomm 82 Msm8996au, Msm8996au Firmware, Qam8255p and 79 more 2025-01-13 N/A 8.4 HIGH
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.
CVE-2024-43064 1 Qualcomm 60 Qam8255p, Qam8255p Firmware, Qam8295p and 57 more 2025-01-13 N/A 7.5 HIGH
Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers through SMMU.
CVE-2024-45559 1 Qualcomm 46 Qam8255p, Qam8255p Firmware, Qam8295p and 43 more 2025-01-13 N/A 5.5 MEDIUM
Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.
CVE-2024-33056 1 Qualcomm 658 205 Mobile Platform, 205 Mobile Platform Firmware, 315 5g Iot Modem and 655 more 2024-12-12 N/A 8.4 HIGH
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
CVE-2024-33044 1 Qualcomm 422 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 419 more 2024-12-12 N/A 8.4 HIGH
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
CVE-2024-33012 1 Qualcomm 498 Ar8035, Ar8035 Firmware, Ar9380 and 495 more 2024-11-26 N/A 7.5 HIGH
Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon.
CVE-2024-33013 1 Qualcomm 340 Ar8035, Ar8035 Firmware, Csr8811 and 337 more 2024-11-26 N/A 7.5 HIGH
Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length.
CVE-2024-33011 1 Qualcomm 498 Ar8035, Ar8035 Firmware, Ar9380 and 495 more 2024-11-26 N/A 7.5 HIGH
Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.