VendorsQualcommmdm9628_firmwareall versions
Vulnerabilities

Qualcomm MDM9628 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

262CVEs
CVE-2023-21649
Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in WLAN
Published 2023-08-08 · Modified
7.8EPSS 0.001
CVE-2023-21654
Improper Restriction of Operations within the Bounds of a Memory Buffer in Audio
Published 2023-09-05 · Modified
7.8EPSS 0.001
CVE-2023-43550
Integer Overflow or Wraparound in Core Services
Published 2024-03-04 · Analyzed
7.8EPSS 0.001
CVE-2024-21475
Use of Out-of-range Pointer Offset in Video
Published 2024-05-06 · Analyzed
7.8EPSS 0.001
CVE-2023-33018
Integer Overflow to Buffer Overflow in User Identity Module
Published 2023-12-05 · Modified
7.8EPSS 0.001
CVE-2023-33031
Buffer Copy Without Checking Size of Input in Automotive Audio
Published 2023-11-07 · Modified
7.8EPSS 0.001
CVE-2023-33059
Buffer Copy Without Checking Size of Input in Audio
Published 2023-11-07 · Modified
7.8EPSS 0.001
CVE-2023-33120
Use After Free in Audio
Published 2024-01-02 · Modified
7.8EPSS 0.001
CVE-2023-43513
Use of Out-of-range Pointer Offset in PCIe
Published 2024-02-06 · Modified
7.8EPSS 0.001
CVE-2023-33069
Buffer Copy Without Checking Size of Input in Audio
Published 2024-02-06 · Modified
7.8EPSS 0.001
CVE-2023-33067
Use of Out-of-range Pointer Offset in Audio
Published 2024-02-06 · Modified
7.8EPSS 0.001
CVE-2023-33068
Buffer Copy Without Checking Size of Input in Audio
Published 2024-02-06 · Modified
7.8EPSS 0.001
CVE-2024-45581
Out-of-bounds Write in Audio
Published 2025-05-06 · Analyzed
7.8EPSS 0.001
CVE-2024-38419
Use After Free in Automotive GPU
Published 2024-11-04 · Analyzed
7.8EPSS 0.001
CVE-2025-21453
Use After Free in GPS HLOS Driver
Published 2025-05-06 · Analyzed
7.8EPSS 0.001
CVE-2024-38415
Use After Free in Computer Vision
Published 2024-11-04 · Analyzed
7.8EPSS 0.001
CVE-2024-23368
Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Qualcomm IPC
Published 2024-07-01 · Modified
7.8EPSS 0.001
CVE-2024-38423
Buffer Copy Without Checking Size of Input in Graphics Linux
Published 2024-11-04 · Analyzed
7.8EPSS 0.001
CVE-2025-21468
Out-of-bounds Write in Computer Vision
Published 2025-05-06 · Analyzed
7.8EPSS 0.001
CVE-2025-21467
Out-of-bounds Write in Computer Vision
Published 2025-05-06 · Analyzed
7.8EPSS 0.001
CVE-2025-27061
Out-of-bounds Write in Video
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-27052
Buffer Copy Without Checking Size of Input in Core Services
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-27053
Incorrect Calculation of Buffer Size in HLOS
Published 2025-10-09 · Analyzed
7.8EPSS 0.001
CVE-2025-27042
Incorrect Calculation of Buffer Size in Video
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-47320
Out-of-bounds Write in Audio
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2026-24082
Use After Free in Automotive GPU
Published 2026-05-04 · Analyzed
7.8EPSS 0.001
CVE-2025-59600
Buffer Over-read in Graphics
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47386
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47379
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47376
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47375
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47404
Buffer Copy Without Checking Size of Input in Automotive Audio
Published 2026-05-04 · Analyzed
7.8EPSS 0.001
CVE-2021-35116
APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2022-06-14 · Modified
7.7EPSS 0.002
CVE-2020-11226
Out of bound memory read in Data modem while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-03-17 · Modified
7.5EPSS 0.009
CVE-2020-11119
Buffer over-read can happen when the buffer length received from response handlers is more than the size of the payload in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-01-21 · Modified
7.5EPSS 0.008
CVE-2022-25736
Denial of service in WLAN due to out-of-bound read happens while processing VHT action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-10-19 · Modified
7.5EPSS 0.008
CVE-2020-11296
Arithmetic overflow can happen while processing NOA IE due to improper error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-02-22 · Modified
7.5EPSS 0.006
CVE-2021-30310
Possible buffer overflow due to Improper validation of received CF-ACK and CF-Poll data frames in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2021-10-20 · Modified
7.5EPSS 0.006
CVE-2021-1914
Loop with unreachable exit condition may occur due to improper handling of unsupported input in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-09-08 · Modified
7.5EPSS 0.006
CVE-2021-1955
Denial of service in SAP case due to improper handling of connections when association is rejected in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-07-13 · Modified
7.5EPSS 0.006
← Prev5 / 7Next →