VendorsQualcommapq8017all versions
Vulnerabilities

Qualcomm APQ8017

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

424CVEs
CVE-2022-33286
Buffer over-read in WLAN
Published 2023-01-06 · Modified
7.5EPSS 0.004
CVE-2022-33290
Null pointer dereference in Bluetooth HOST
Published 2023-01-06 · Modified
7.5EPSS 0.004
CVE-2022-33299
Null pointer dereference in Bluetooth HOST
Published 2023-01-06 · Modified
7.5EPSS 0.004
CVE-2022-40504
Reachable assertion in Modem
Published 2023-05-02 · Modified
7.5EPSS 0.004
CVE-2022-40521
Improper authorization in Modem
Published 2023-06-06 · Modified
7.5EPSS 0.004
CVE-2023-33019
Improper Authorization in WLAN Host
Published 2023-09-05 · Modified
7.5EPSS 0.004
CVE-2023-33020
Improper Authorization in WLAN Host
Published 2023-09-05 · Modified
7.5EPSS 0.004
CVE-2023-33080
Buffer over-read in WLAN Firmware
Published 2023-12-05 · Modified
7.5EPSS 0.003
CVE-2023-43511
Loop with Unreachable Exit Condition (Infinite Loop) in WLAN Firmware
Published 2024-01-02 · Modified
7.5EPSS 0.003
CVE-2024-33051
Buffer Over-read in WLAN Firmware
Published 2024-09-02 · Analyzed
7.5EPSS 0.003
CVE-2024-53027
Buffer Copy Without Checking Size of Input in WLAN Host
Published 2025-03-03 · Analyzed
7.5EPSS 0.003
CVE-2024-23358
Buffer Over-read in Multi Mode Call Processor
Published 2024-09-02 · Analyzed
7.5EPSS 0.003
CVE-2025-21430
Buffer Over-read in WLAN Host
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2025-21429
Buffer Over-read in WLAN Host
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2024-23385
Reachable Assertion in Modem
Published 2024-11-04 · Analyzed
7.5EPSS 0.003
CVE-2025-21428
Buffer Over-read in WLAN Host
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2025-47318
Buffer Over-read in BT Controller
Published 2025-09-24 · Analyzed
7.5EPSS 0.002
CVE-2025-21454
Buffer Over-read in WLAN Embedded SW
Published 2025-07-08 · Analyzed
7.5EPSS 0.002
CVE-2025-21449
Buffer Over-read in WLAN Embedded SW
Published 2025-07-08 · Analyzed
7.5EPSS 0.002
CVE-2020-11148
Use after free issue in HIDL while using callback to post event in Rx thread when internal mutex is not acquired and meantime close is triggered and callback instance is deleted in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2021-01-21 · Modified
7.2EPSS 0.002
CVE-2020-11183
A process can potentially cause a buffer overflow in the display service allowing privilege escalation by executing code as that service in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-01-21 · Modified
7.2EPSS 0.002
CVE-2019-10574
Lack of boundary checks for data offsets received from HLOS can lead to out-of-bound read in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8016, APQ8017, APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, QCM2150, QCS605, QM215, Rennell, SC7180, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130
Published 2020-04-16 · Modified
7.1EPSS 0.016
CVE-2019-10482
Due to the use of non-time-constant comparison functions there is issue in timing side channels which can be used as a potential side channel for SUI corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9650, MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCS404, QCS405, QCS605, QM215, SA6155P, SC8180X, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Published 2019-12-18 · Modified
7.1EPSS 0.006
CVE-2021-1935
Possible null pointer dereference due to lack of validation check for passed pointer during key import in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-09-09 · Modified
7.1EPSS 0.001
CVE-2022-22076
Cryptographic issue in Core
Published 2023-06-06 · Modified
7.1EPSS 0.001
CVE-2023-21626
Improper Authentication in HLOS.
Published 2023-08-08 · Modified
7.1EPSS 0.001
CVE-2025-21482
Cryptographic Issues in Core
Published 2025-09-24 · Analyzed
7.1EPSS 0.001
CVE-2020-11179
Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race condition. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-01-21 · Modified
7.0EPSS 0.003
CVE-2020-11290
Use after free condition in msm ioctl events due to race between the ioctl register and deregister events in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2021-03-17 · Modified
7.0EPSS 0.002
CVE-2020-3619
u'Non-secure memory is touched multiple times during TrustZone\u2019s execution and can lead to privilege escalation or memory corruption' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8098, IPQ8074, Kamorta, MDM9150, MDM9206, MDM9607, MDM9650, MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8998, QCA8081, QCS404, QCS605, QCS610, QM215, Rennell, SA415M, SC7180, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SM6150, SM7150, SM8150, SXR1130
Published 2020-09-08 · Modified
7.0EPSS 0.002
CVE-2019-14070
Possible use after free issue in pcm volume controls due to race condition exist in private data used in mixer controls in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096AU, APQ8098, IPQ4019, IPQ6018, IPQ8064, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9615, MDM9640, MDM9650, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCS605, QM215, Rennell, SA6155P, Saipan, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Published 2020-04-16 · Modified
7.0EPSS 0.001
CVE-2020-11233
Time-of-check time-of-use race condition While processing partition entries due to newly created buffer was read again from mmc without validation in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-06-09 · Modified
7.0EPSS 0.001
CVE-2019-10486
Race condition due to the lack of resource lock which will be concurrently modified in the memcpy statement leads to out of bound access in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909W, MSM8939, MSM8953, MSM8996AU, MSM8998, Nicobar, QCN7605, QCS405, QCS605, QM215, SDA660, SDA845, SDM429, SDM439, SDM630, SDM632, SDM636, SDM660, SDM710, SDM845, SDX20, SDX24, SM6150, SM7150, SM8150
Published 2019-11-21 · Modified
7.0EPSS 0.001
CVE-2020-11250
Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
7.0EPSS 0.001
CVE-2020-11262
A race between command submission and destroying the context can cause an invalid context being added to the list leads to use after free issue. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-06-09 · Modified
7.0EPSS 0.001
CVE-2020-11152
Race condition in HAL layer while processing callback objects received from HIDL due to lack of synchronization between accessing objects in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-01-21 · Modified
6.9EPSS 0.001
CVE-2022-33289
Improper validation of array index in Modem
Published 2023-04-04 · Modified
6.8EPSS 0.002
CVE-2023-21629
Double Free in Modem
Published 2023-07-04 · Modified
6.8EPSS 0.002
CVE-2020-11286
An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface & endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-02-22 · Modified
6.8EPSS 0.002
CVE-2020-11231
Two threads call one or both functions concurrently leading to corruption of pointers and reference counters which in turn can lead to heap corruption in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2021-04-07 · Modified
6.7EPSS 0.002
← Prev10 / 11Next →