📦 Sc8180x Aaab Firmware

by Qualcomm

🔍 What is Sc8180x Aaab Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-43551

CRITICAL CVSS 9.1 Jun 3, 2024

This vulnerability allows a rogue LTE base station to bypass authentication during network attachment, enabling man-in-the-middle attacks. It affects mobile devices with Qualcomm chipsets that handle ...

CVE-2023-43538

CRITICAL CVSS 9.3 Jun 3, 2024

This vulnerability allows memory corruption in Qualcomm's TrustZone Secure OS during Tunnel Invoke Manager initialization. Attackers could potentially execute arbitrary code in the secure execution en...

CVE-2023-28578

CRITICAL CVSS 9.3 Mar 4, 2024

CVE-2023-28578 is a memory corruption vulnerability in Qualcomm Core Services that occurs when removing a single event listener. This allows attackers to potentially execute arbitrary code or cause de...

CVE-2025-47359

HIGH CVSS 7.8 Feb 2, 2026

CVE-2025-47359 is a use-after-free vulnerability in Qualcomm memory management APIs that allows memory corruption when multiple threads simultaneously access memory free operations. This affects devic...

CVE-2025-27050

HIGH CVSS 7.8 Jul 8, 2025

This CVE describes a use-after-free vulnerability (CWE-416) in Qualcomm components where abrupt client process termination during event handling causes memory corruption. Attackers could potentially e...

CVE-2025-21466

HIGH CVSS 7.8 Jul 8, 2025

This vulnerability allows memory corruption when processing a private escape command in an event trigger, potentially leading to arbitrary code execution or system crashes. It affects Qualcomm product...

CVE-2025-27046

HIGH CVSS 7.8 Jul 8, 2025

This vulnerability involves memory corruption in Qualcomm components when processing multiple simultaneous escape calls, potentially allowing attackers to execute arbitrary code or cause denial of ser...

CVE-2025-21422

HIGH CVSS 7.1 Jul 8, 2025

This cryptographic vulnerability in Qualcomm chipsets allows improper handling of cryptographic API calls, potentially leading to key corruption or IV reuse. This affects devices using vulnerable Qual...

CVE-2025-21470

HIGH CVSS 7.8 May 6, 2025

This vulnerability allows memory corruption when processing image encoding with a NULL configuration parameter in an IOCTL call. It affects Qualcomm devices and components that use the vulnerable imag...

CVE-2024-49842

HIGH CVSS 7.8 May 6, 2025

This CVE describes a memory corruption vulnerability in Qualcomm components where incorrect API restrictions allow memory mapping into protected VM address space. Attackers could exploit this to execu...

CVE-2024-38420

HIGH CVSS 8.8 Feb 3, 2025

This vulnerability allows memory corruption when configuring a hypervisor-based input virtual device, potentially enabling arbitrary code execution or system compromise. It affects systems using Qualc...

CVE-2024-45560

HIGH CVSS 7.8 Feb 3, 2025

This CVE describes a memory corruption vulnerability in Qualcomm hardware encoders when taking snapshots due to unvalidated userspace buffers. Attackers could potentially execute arbitrary code or cau...

CVE-2024-45561

HIGH CVSS 7.8 Feb 3, 2025

This vulnerability allows memory corruption when handling IOCTL calls from user-space to set latency levels in Qualcomm components. Attackers could potentially execute arbitrary code or cause denial o...

CVE-2024-45541

HIGH CVSS 7.8 Jan 6, 2025

This vulnerability allows user-space applications to trigger memory corruption through an IOCTL call when reading board data. It affects systems using Qualcomm hardware with vulnerable drivers. Succes...

CVE-2024-45542

HIGH CVSS 7.8 Jan 6, 2025

This vulnerability allows memory corruption when a user-space application makes a specific IOCTL call to write board data to the WLAN driver. Attackers could potentially execute arbitrary code or caus...

CVE-2024-21476

HIGH CVSS 7.8 May 6, 2024

CVE-2024-21476 is a memory corruption vulnerability in Qualcomm components where improper validation of user-supplied channel IDs can lead to arbitrary code execution. This affects devices using vulne...

CVE-2023-43529

HIGH CVSS 7.5 May 6, 2024

This vulnerability allows attackers to cause a denial-of-service condition in IKEv2 implementations by sending malformed fragment packets. It affects systems using Qualcomm's IKEv2 implementation, pot...

CVE-2023-33115

HIGH CVSS 7.8 Apr 1, 2024

This CVE describes a memory corruption vulnerability in Qualcomm's trusted execution environment when processing buffer initialization for certain report types. Attackers could potentially execute arb...

CVE-2023-28547

HIGH CVSS 8.4 Apr 1, 2024

This CVE describes a memory corruption vulnerability in the SPS Application's sorter Trusted Application (TA) when requesting public keys. Successful exploitation could allow attackers to execute arbi...

CVE-2023-33066

HIGH CVSS 8.4 Mar 4, 2024

This vulnerability allows memory corruption in Qualcomm audio drivers when processing RT proxy port register operations. Attackers could potentially execute arbitrary code or cause denial of service o...

CVE-2024-53009

MEDIUM CVSS 5.3 Jul 8, 2025

This CVE describes a memory corruption vulnerability in the mailbox component of Qualcomm automotive systems. Attackers could potentially execute arbitrary code or cause denial of service by exploitin...