Qualcomm Security Vulnerabilities (CVEs)
Track 645 security vulnerabilities affecting Qualcomm products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.
This vulnerability allows user-space applications to trigger memory corruption through an IOCTL call when reading board data. It affects systems using...
Jan 6, 2025This CVE describes a denial-of-service vulnerability in Qualcomm System Memory Management Unit (SMMU) where uncontrolled resource consumption occurs w...
Jan 6, 2025This vulnerability allows unauthorized access to mailbox data through the mailbox read API, potentially exposing sensitive information. It affects Qua...
Jan 6, 2025This vulnerability allows information disclosure through improper handling of IOCTL calls in Qualcomm trusted execution environments. Attackers can po...
Jan 6, 2025This vulnerability allows attackers to cause memory corruption by making specific IOCTL calls to unmap DMA buffers in Qualcomm components. It affects ...
Jan 6, 2025This CVE describes an information disclosure vulnerability in Qualcomm mailbox write API where processing oversized messages can leak sensitive data. ...
Jan 6, 2025This CVE describes a memory corruption vulnerability in Qualcomm's IPA (IP Accelerator) statistics processing when no active clients are registered. S...
Jan 6, 2025This vulnerability allows memory corruption when user-space applications make IOCTL calls to read WLAN diagnostic information. Attackers could potenti...
Dec 2, 2024This vulnerability allows memory corruption in Qualcomm NPU (Neural Processing Unit) drivers when processing API calls with invalid input. Attackers c...
Dec 2, 2024This vulnerability allows local attackers to cause memory corruption in WLAN drivers by sending specially crafted IOCTL calls. It affects systems with...
Dec 2, 2024This vulnerability allows local attackers to cause memory corruption in WLAN drivers by sending specially crafted IOCTL calls. It affects devices usin...
Dec 2, 2024This vulnerability allows memory corruption when invalid input is passed to the GPU Headroom API call in Qualcomm components. Attackers could potentia...
Dec 2, 2024This vulnerability allows an attacker to cause a denial-of-service (DoS) condition by sending specially crafted beacon frames with malformed Multi-Lin...
Dec 2, 2024CVE-2024-33056 is a memory corruption vulnerability in Qualcomm's Shared Memory (SMEM) subsystem that allows attackers to potentially execute arbitrar...
Dec 2, 2024CVE-2024-33053 is a use-after-free vulnerability in Qualcomm's CVP buffer management that allows memory corruption when multiple threads simultaneousl...
Dec 2, 2024This vulnerability allows memory corruption when configuring SMR/S2CR registers in Bypass mode on Qualcomm chipsets. Attackers could potentially execu...
Dec 2, 2024This vulnerability allows memory corruption when a PAL client passes random values as handles to PAL service APIs without proper validation. It affect...
Dec 2, 2024This CVE describes a memory corruption vulnerability in Qualcomm camera drivers where a user-space variable is used for kernel memory allocation, pote...
Dec 2, 2024CVE-2018-11816 is a use-after-free vulnerability in Android's MediaServer component that allows attackers to execute arbitrary code with elevated priv...
Nov 26, 2024CVE-2017-18306 is an information disclosure vulnerability in Qualcomm components that allows attackers to read uninitialized memory due to improper va...
Nov 26, 2024The Touch Pal application on Qualcomm devices was configured to collect user behavior data without user consent or awareness. This affects users of An...
Nov 26, 2024This vulnerability allows attackers to perform out-of-bounds reads in 802.11 frame processing functions due to insufficient input validation. It affec...
Nov 26, 2024CVE-2017-11076 is a critical memory corruption vulnerability in Qualcomm hardware VP9 video decoding that allows attackers to execute arbitrary code o...
Nov 26, 2024CVE-2017-9711 is a privilege escalation vulnerability in Qualcomm components where unprivileged processes can perform IOCTL calls that should be restr...
Nov 22, 2024This vulnerability allows memory corruption during GPU page table switching in Qualcomm GPU drivers. Attackers could potentially execute arbitrary cod...
Nov 4, 2024This vulnerability allows memory corruption while processing GPU commands in Qualcomm hardware, potentially enabling attackers to execute arbitrary co...
Nov 4, 2024This CVE describes a use-after-free vulnerability (CWE-416) in Qualcomm firmware that occurs when handling session errors. An attacker could exploit t...
Nov 4, 2024This CVE describes a memory corruption vulnerability in Qualcomm's station LL statistic handling that could allow attackers to execute arbitrary code ...
Nov 4, 2024This vulnerability allows memory corruption in the Qualcomm JPEG Encoder driver when processing IOCTL input parameters. Attackers could exploit this t...
Nov 4, 2024This vulnerability allows attackers to cause a Denial of Service (DoS) condition by sending specially crafted Radio Resource Control (RRC) messages co...
Nov 4, 2024This vulnerability allows an attacker to cause a denial-of-service (DoS) condition by sending specially crafted MBSSID Information Element fragments i...
Nov 4, 2024This CVE describes a memory corruption vulnerability in Qualcomm components where asynchronous modification of shared memory by user applications whil...
Nov 4, 2024This CVE describes a memory corruption vulnerability in Qualcomm's IPC frequency table parameter parsing for LPLH (likely Low Power Low Hardware). Whe...
Nov 4, 2024This vulnerability allows attackers to cause a denial-of-service (DoS) condition in mobile devices by sending specially crafted MAC RAR messages with ...
Nov 4, 2024This vulnerability allows memory corruption in Qualcomm EVA drivers when user-space applications modify packet sizes after system properties have been...
Nov 4, 2024This CVE describes a use-after-free vulnerability (CWE-416) in Qualcomm's memory management subsystem that allows attackers to corrupt memory while ma...
Oct 7, 2024This vulnerability allows memory corruption through specially crafted user packets that trigger page faults in Qualcomm components. Attackers could po...
Oct 7, 2024This vulnerability allows attackers to read sensitive information from Wi-Fi chipsets when parsing Multi-Link Device (MLD) information elements. It af...
Oct 7, 2024This vulnerability allows an attacker to cause a denial-of-service (DoS) condition by sending specially crafted beacon or probe response frames contai...
Oct 7, 2024This vulnerability allows memory corruption when log files are redirected to arbitrary file locations with arbitrary names. It affects systems using Q...
Oct 7, 2024This vulnerability allows memory corruption in Qualcomm camera drivers when taking snapshots with specific offset variables. Attackers could potential...
Oct 7, 2024This vulnerability allows an attacker to cause a denial-of-service (DoS) condition by sending specially crafted beacon frames with specific Extension ...
Oct 7, 2024This vulnerability allows memory corruption through IOCTL calls to the MSM module during audio operations on Qualcomm devices. Attackers could potenti...
Oct 7, 2024This CVE describes a memory corruption vulnerability in Qualcomm network scanning functionality that could allow an attacker to execute arbitrary code...
Oct 7, 2024This vulnerability allows memory corruption when two processes concurrently create and destroy the same HAB virtual channel via IOCTL calls. It affect...
Oct 7, 2024This vulnerability allows memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a Qualcomm driver. Attackers ...
Oct 7, 2024This vulnerability allows attackers to cause memory corruption through a specific IOCTL call for group information retrieval. Successful exploitation ...
Sep 2, 2024This vulnerability allows memory corruption when two threads simultaneously map and unmap a single node in Qualcomm components. Successful exploitatio...
Sep 2, 2024This vulnerability allows memory corruption during the handshake process between Primary and Trusted Virtual Machines in Qualcomm platforms. Attackers...
Sep 2, 2024This vulnerability allows an attacker to cause a denial-of-service (DoS) condition in affected Wi-Fi systems by sending specially crafted beacon frame...
Sep 2, 2024Why Monitor Qualcomm Security Vulnerabilities?
Real-time CVE tracking: Our automated system monitors 645+ known vulnerabilities affecting Qualcomm products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.
Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Qualcomm packages in under 60 seconds. No agents required - completely agentless scanning that works across Qualcomm deployments.
Free vulnerability database: Access detailed information about every Qualcomm CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.
🚀 Get Started in 60 Seconds
- Register free account & add your servers
- Run one-time scan or schedule automatic monitoring (every 1-24 hours)
- Receive instant alerts when new Qualcomm CVEs affect your systems
- Access dashboard with severity breakdown & fix instructions