📦 Sc8180xp Ad Firmware

by Qualcomm

🔍 What is Sc8180xp Ad Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-43551

CRITICAL CVSS 9.1 Jun 3, 2024

This vulnerability allows a rogue LTE base station to bypass authentication during network attachment, enabling man-in-the-middle attacks. It affects mobile devices with Qualcomm chipsets that handle ...

CVE-2023-43538

CRITICAL CVSS 9.3 Jun 3, 2024

This vulnerability allows memory corruption in Qualcomm's TrustZone Secure OS during Tunnel Invoke Manager initialization. Attackers could potentially execute arbitrary code in the secure execution en...

CVE-2023-28578

CRITICAL CVSS 9.3 Mar 4, 2024

CVE-2023-28578 is a memory corruption vulnerability in Qualcomm Core Services that occurs when removing a single event listener. This allows attackers to potentially execute arbitrary code or cause de...

CVE-2023-28562

CRITICAL CVSS 9.8 Sep 5, 2023

CVE-2023-28562 is a critical buffer overflow vulnerability in Qualcomm chipsets that allows remote attackers to execute arbitrary code or cause denial of service by sending specially crafted ESL paylo...

CVE-2025-47359

HIGH CVSS 7.8 Feb 2, 2026

CVE-2025-47359 is a use-after-free vulnerability in Qualcomm memory management APIs that allows memory corruption when multiple threads simultaneously access memory free operations. This affects devic...

CVE-2025-27050

HIGH CVSS 7.8 Jul 8, 2025

This CVE describes a use-after-free vulnerability (CWE-416) in Qualcomm components where abrupt client process termination during event handling causes memory corruption. Attackers could potentially e...

CVE-2025-21466

HIGH CVSS 7.8 Jul 8, 2025

This vulnerability allows memory corruption when processing a private escape command in an event trigger, potentially leading to arbitrary code execution or system crashes. It affects Qualcomm product...

CVE-2025-27046

HIGH CVSS 7.8 Jul 8, 2025

This vulnerability involves memory corruption in Qualcomm components when processing multiple simultaneous escape calls, potentially allowing attackers to execute arbitrary code or cause denial of ser...

CVE-2025-21422

HIGH CVSS 7.1 Jul 8, 2025

This cryptographic vulnerability in Qualcomm chipsets allows improper handling of cryptographic API calls, potentially leading to key corruption or IV reuse. This affects devices using vulnerable Qual...

CVE-2024-49842

HIGH CVSS 7.8 May 6, 2025

This CVE describes a memory corruption vulnerability in Qualcomm components where incorrect API restrictions allow memory mapping into protected VM address space. Attackers could exploit this to execu...

CVE-2024-38420

HIGH CVSS 8.8 Feb 3, 2025

This vulnerability allows memory corruption when configuring a hypervisor-based input virtual device, potentially enabling arbitrary code execution or system compromise. It affects systems using Qualc...

CVE-2024-45541

HIGH CVSS 7.8 Jan 6, 2025

This vulnerability allows user-space applications to trigger memory corruption through an IOCTL call when reading board data. It affects systems using Qualcomm hardware with vulnerable drivers. Succes...

CVE-2024-45542

HIGH CVSS 7.8 Jan 6, 2025

This vulnerability allows memory corruption when a user-space application makes a specific IOCTL call to write board data to the WLAN driver. Attackers could potentially execute arbitrary code or caus...

CVE-2024-21469

HIGH CVSS 7.3 Jul 1, 2024

This vulnerability involves memory corruption when an invoke call and a TEE (Trusted Execution Environment) call target the same trusted application simultaneously. It affects devices with Qualcomm ch...

CVE-2024-21462

HIGH CVSS 7.1 Jul 1, 2024

This vulnerability allows a denial-of-service attack when loading Trusted Application (TA) ELF files on Qualcomm chipsets. It affects devices using Qualcomm processors with vulnerable firmware. Attack...

CVE-2023-43554

HIGH CVSS 8.4 Jul 1, 2024

This vulnerability allows memory corruption through improper input validation in FastRPC's IOCTL handler. Attackers could potentially execute arbitrary code with kernel privileges on affected Qualcomm...

CVE-2024-21476

HIGH CVSS 7.8 May 6, 2024

CVE-2024-21476 is a memory corruption vulnerability in Qualcomm components where improper validation of user-supplied channel IDs can lead to arbitrary code execution. This affects devices using vulne...

CVE-2023-43529

HIGH CVSS 7.5 May 6, 2024

This vulnerability allows attackers to cause a denial-of-service condition in IKEv2 implementations by sending malformed fragment packets. It affects systems using Qualcomm's IKEv2 implementation, pot...

CVE-2023-33115

HIGH CVSS 7.8 Apr 1, 2024

This CVE describes a memory corruption vulnerability in Qualcomm's trusted execution environment when processing buffer initialization for certain report types. Attackers could potentially execute arb...

CVE-2023-28547

HIGH CVSS 8.4 Apr 1, 2024

This CVE describes a memory corruption vulnerability in the SPS Application's sorter Trusted Application (TA) when requesting public keys. Successful exploitation could allow attackers to execute arbi...

CVE-2023-33066

HIGH CVSS 8.4 Mar 4, 2024

This vulnerability allows memory corruption in Qualcomm audio drivers when processing RT proxy port register operations. Attackers could potentially execute arbitrary code or cause denial of service o...

CVE-2023-33081

HIGH CVSS 7.5 Dec 5, 2023

CVE-2023-33081 is a buffer overflow vulnerability in Qualcomm chipsets that occurs when processing Target Wake Time (TWT) frame parameters in over-the-air broadcasts. This vulnerability allows attacke...

CVE-2023-33017

HIGH CVSS 7.8 Dec 5, 2023

This CVE describes a memory corruption vulnerability in the UEFI boot process when running a ListVars test during boot. It affects Qualcomm devices with vulnerable firmware, potentially allowing attac...

CVE-2023-33022

HIGH CVSS 8.4 Dec 5, 2023

This vulnerability allows memory corruption in the High-Level Operating System (HLOS) when user-space applications make specific IOCTL calls to Qualcomm hardware components. Attackers could exploit th...

CVE-2023-24848

HIGH CVSS 8.2 Oct 3, 2023

This vulnerability allows information disclosure in Qualcomm data modems during VoLTE calls when an undefined RTCP FB line value is processed. Attackers could potentially access sensitive information ...

CVE-2023-22385

HIGH CVSS 8.2 Oct 3, 2023

This vulnerability allows memory corruption in Qualcomm data modem chipsets during mobile-originated or mobile-terminated VoLTE calls. Attackers could potentially execute arbitrary code or cause denia...

CVE-2023-28565

HIGH CVSS 7.8 Sep 5, 2023

This vulnerability allows memory corruption in Qualcomm's WLAN Hardware Abstraction Layer (HAL) when processing command streams through WMI interfaces. Attackers could potentially execute arbitrary co...

CVE-2023-28573

HIGH CVSS 7.8 Sep 5, 2023

This vulnerability allows memory corruption in Qualcomm's WLAN Hardware Abstraction Layer (HAL) when parsing WMI command parameters. Attackers could potentially execute arbitrary code or cause denial ...

CVE-2023-33015

HIGH CVSS 7.5 Sep 5, 2023

This vulnerability allows an attacker to cause a denial-of-service (DoS) condition in Qualcomm WLAN firmware by sending specially crafted beacon frames with malformed MBSSID information elements. It a...

CVE-2023-28560

HIGH CVSS 7.8 Sep 5, 2023

This vulnerability allows memory corruption in the WLAN Hardware Abstraction Layer (HAL) when processing devIndex values from untrusted WMI payloads. Attackers could potentially execute arbitrary code...

CVE-2022-33275

HIGH CVSS 8.4 Sep 5, 2023

This vulnerability allows memory corruption in Qualcomm WLAN hardware abstraction layer due to improper array index validation. Attackers could potentially execute arbitrary code or cause denial of se...

CVE-2023-21631

HIGH CVSS 7.5 Jul 4, 2023

This vulnerability allows attackers to exploit improper input validation in Qualcomm modem firmware when processing LTE security mode commands from cellular networks. Attackers could potentially execu...

CVE-2022-40521

HIGH CVSS 7.5 Jun 6, 2023

CVE-2022-40521 is an improper authorization vulnerability in Qualcomm modem firmware that allows attackers to cause a transient denial of service (DoS) by sending specially crafted requests. This affe...

CVE-2022-40523

HIGH CVSS 7.1 Jun 6, 2023

This vulnerability allows attackers to exploit indirect branch misprediction in Qualcomm chipsets to leak sensitive information from the kernel memory. It affects devices using vulnerable Qualcomm Sna...

CVE-2022-40529

HIGH CVSS 7.1 Jun 6, 2023

This vulnerability allows memory corruption in the Qualcomm kernel due to improper access control when processing mapping requests from root processes. It affects devices with Qualcomm chipsets, poten...

CVE-2023-21628

HIGH CVSS 8.4 Jun 6, 2023

This vulnerability allows memory corruption in Qualcomm's WLAN Hardware Abstraction Layer (HAL) when processing specific wireless commands. Attackers could potentially execute arbitrary code or cause ...

CVE-2022-33264

HIGH CVSS 7.9 Jun 6, 2023

CVE-2022-33264 is a stack-based buffer overflow vulnerability in Qualcomm modem firmware that allows memory corruption when parsing OTASP Key Generation Request Messages. Successful exploitation could...

CVE-2022-33307

HIGH CVSS 8.4 Jun 6, 2023

CVE-2022-33307 is a double-free memory corruption vulnerability in Qualcomm automotive components that allows attackers to execute arbitrary code or cause denial of service. This affects automotive sy...

CVE-2022-40504

HIGH CVSS 7.5 May 2, 2023

This vulnerability allows a denial-of-service (DoS) attack on mobile devices by sending a specially crafted Downlink Data Indication message to the modem. When exploited, it triggers a reachable asser...

CVE-2024-53009

MEDIUM CVSS 5.3 Jul 8, 2025

This CVE describes a memory corruption vulnerability in the mailbox component of Qualcomm automotive systems. Attackers could potentially execute arbitrary code or cause denial of service by exploitin...