VendorsQualcommmdm9628any version
Vulnerabilities

Qualcomm MDM9628 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

273CVEs
CVE-2024-33013
Buffer Over-read in WLAN Host
Published 2024-08-05 · Analyzed
7.5EPSS 0.003
CVE-2024-33010
Use After Free in WLAN Host
Published 2024-08-05 · Analyzed
7.5EPSS 0.003
CVE-2025-21430
Buffer Over-read in WLAN Host
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2025-21429
Buffer Over-read in WLAN Host
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2025-21428
Buffer Over-read in WLAN Host
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2025-47318
Buffer Over-read in BT Controller
Published 2025-09-24 · Analyzed
7.5EPSS 0.002
CVE-2025-47383
Missing Cryptographic Step in Data Modem
Published 2026-03-02 · Analyzed
7.2EPSS 0.001
CVE-2020-11132
u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8096AU, APQ8098, MDM8207, MDM9150, MDM9205, MDM9206, MDM9207, MDM9250, MDM9607, MDM9628, MDM9650, MSM8108, MSM8208, MSM8209, MSM8608, MSM8905, MSM8909, MSM8998, QCM4290, QCS405, QCS410, QCS4290, QCS603, QCS605, QCS610, QSM8250, SA415M, SA515M, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155, SA8155P, SA8195P, SC7180, SC8180X, SC8180X+SDX55, SC8180XP, SDA640, SDA670, SDA845, SDA855, SDM1000, SDM640, SDM670, SDM710, SDM712, SDM830, SDM845, SDM850, SDX24, SDX50M, SDX55, SDX55M, SM4125, SM4250, SM4250P, SM6115, SM6115P, SM6125, SM6150, SM6150P, SM6250, SM6250P, SM6350, SM7125, SM7150, SM7150P, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SXR1120, SXR1130, SXR2130, SXR2130P, WCD9330
Published 2020-11-12 · Modified
7.1EPSS 0.002
CVE-2021-1935
Possible null pointer dereference due to lack of validation check for passed pointer during key import in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-09-09 · Modified
7.1EPSS 0.001
CVE-2022-22076
Cryptographic issue in Core
Published 2023-06-06 · Modified
7.1EPSS 0.001
CVE-2023-21626
Improper Authentication in HLOS.
Published 2023-08-08 · Modified
7.1EPSS 0.001
CVE-2025-21482
Cryptographic Issues in Core
Published 2025-09-24 · Analyzed
7.1EPSS 0.001
CVE-2020-11233
Time-of-check time-of-use race condition While processing partition entries due to newly created buffer was read again from mmc without validation in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-06-09 · Modified
7.0EPSS 0.001
CVE-2022-33289
Improper validation of array index in Modem
Published 2023-04-04 · Modified
6.8EPSS 0.002
CVE-2020-11286
An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface & endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-02-22 · Modified
6.8EPSS 0.002
CVE-2024-53013
Buffer Copy Without Checking Size of Input in Audio
Published 2025-06-03 · Analyzed
6.6EPSS 0.001
CVE-2025-47333
Use After Free in HLOS
Published 2026-01-06 · Analyzed
6.6EPSS 0.001
CVE-2021-30348
Improper validation of LLM utility timers availability can lead to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2022-01-03 · Modified
6.5EPSS 0.002
CVE-2023-28586
Improper Restriction of Operation within the Bounds of a Memory Buffer in TZ Secure OS
Published 2023-12-05 · Modified
6.5EPSS 0.001
CVE-2021-1906
Improper handling of address deregistration on failure can lead to new GPU address allocation failure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-05-07 · Analyzed
6.2KEVEPSS 0.005
CVE-2021-1904
Child process can leak information from parent process due to numeric pids are getting compared and these pid can be reused in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-09-08 · Modified
6.2EPSS 0.005
CVE-2022-22075
Information Exposure in Graphics
Published 2023-03-07 · Modified
6.2EPSS 0.001
CVE-2025-27064
Buffer Over-read in Core Services
Published 2025-11-04 · Analyzed
6.1EPSS 0.001
CVE-2025-47331
Buffer Over-read in Video
Published 2026-01-06 · Analyzed
6.1EPSS 0.001
CVE-2020-11221
Usage of syscall by non-secure entity can allow extraction of secure QTEE diagnostic information in clear text form due to insufficient checks in the syscall handler and leads to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-03-17 · Modified
5.5EPSS 0.002
CVE-2020-11199
HLOS to access EL3 stack canary by just mapping imem region due to Improper access control and can lead to information exposure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-03-17 · Modified
5.5EPSS 0.002
CVE-2020-11123
u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attempts at getting user`s lock-screen password can be bypassed by performing the standard gatekeeper operations.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8009W, APQ8017, APQ8037, APQ8053, APQ8064AU, APQ8096, APQ8096AU, APQ8096SG, APQ8098, MDM8207, MDM9150, MDM9205, MDM9206, MDM9207, MDM9250, MDM9607, MDM9628, MDM9640, MDM9650, MDM9655, MSM8108, MSM8208, MSM8209, MSM8608, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8996SG, MSM8998, QCM4290, QCS405, QCS410, QCS4290, QCS603, QCS605, QCS610, QM215, QSM8250, QSM8350, SA415M, SA515M, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155, SA8155P, SA8195P, SC7180, SC8180X, SC8180XP, SDA429W, SDA640, SDA660, SDA670, SDA845, SDA855, SDM1000, SDM429, SDM429W, SDM439, SDM450, SDM455, SDM630, SDM632, SDM636, SDM640, SDM660, SDM670, SDM710, SDM712, SDM830, SDM845, SDM850, SDW2500, SDX24, SDX50M, SDX55, SDX55M, SM4125, SM4250, SM4250P, SM6115, SM6115P, SM6125, SM6150, SM6150P, SM6250, SM6250P, SM6350, SM7125, SM7150, SM7150P, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SM8350, SM8350P, SXR1120, SXR1130, SXR2130, SXR2130P, WCD9330
Published 2020-11-12 · Modified
5.5EPSS 0.002
CVE-2023-33064
Buffer Over-read in Audio
Published 2024-02-06 · Modified
5.5EPSS 0.001
CVE-2025-47369
Information Exposure in Computer Vision
Published 2026-01-06 · Analyzed
5.5EPSS 0.001
CVE-2025-47330
Buffer Over-read in Video
Published 2026-01-06 · Analyzed
5.5EPSS 0.001
CVE-2024-38426
Improper Authentication in Modem
Published 2025-03-03 · Analyzed
5.4EPSS 0.003
CVE-2021-1967
Possible stack buffer overflow due to lack of check on the maximum number of post NAN discovery attributes while processing a NAN Match event in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-10-20 · Modified
5.3EPSS 0.001
CVE-2022-22079
Buffer Over-read in BOOT
Published 2023-01-06 · Modified
4.6EPSS 0.002
← Prev7 / 7