VendorsQualcommqca6431_firmwareany version
Vulnerabilities

Qualcomm QCA6431 Firmware any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

428CVEs
CVE-2021-1963
Possible use-after-free due to lack of validation for the rule count in filter table in IPA driver in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-09-09 · Modified
6.7EPSS 0.002
CVE-2021-1960
Improper handling of ASB-C broadcast packets with crafted opcode in LMP can lead to uncontrolled resource consumption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-09-09 · Modified
6.5EPSS 0.002
CVE-2021-1957
Improper Access Control when ACL link encryption is failed and ACL link is not disconnected during reconnection with paired device in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2021-09-09 · Modified
6.5EPSS 0.001
CVE-2023-28586
Improper Restriction of Operation within the Bounds of a Memory Buffer in TZ Secure OS
Published 2023-12-05 · Modified
6.5EPSS 0.001
CVE-2024-43056
Buffer Over-read in Hypervisor
Published 2025-03-03 · Analyzed
6.5EPSS 0.001
CVE-2025-21464
Out-of-bounds Read in Core
Published 2025-08-06 · Analyzed
6.5EPSS 0.001
CVE-2020-11230
Potential arbitrary memory corruption when the qseecom driver updates ion physical addresses in the buffer as it exposes a physical address to user land in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2021-03-17 · Modified
6.4EPSS 0.001
CVE-2021-1904
Child process can leak information from parent process due to numeric pids are getting compared and these pid can be reused in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-09-08 · Modified
6.2EPSS 0.005
CVE-2022-25664
Information disclosure due to exposure of information while GPU reads the data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2022-10-12 · Modified
6.2EPSS 0.002
CVE-2021-1929
Lack of strict validation of bootmode can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2021-09-08 · Modified
6.2EPSS 0.002
CVE-2024-45551
Weak Authentication in HLOS
Published 2025-04-07 · Analyzed
6.2EPSS 0.001
CVE-2021-35135
A null pointer dereference may potentially occur during RSA key import in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2022-09-02 · Modified
6.2EPSS 0.001
CVE-2022-40533
Untrusted Pointer Dereference in Core
Published 2023-06-06 · Modified
6.2EPSS 0.001
CVE-2022-25725
Use-after-Free in MODEM
Published 2023-01-06 · Modified
6.2EPSS 0.001
CVE-2024-23357
NULL Pointer Dereference in HLOS
Published 2024-08-05 · Analyzed
6.2EPSS 0.001
CVE-2025-21433
NULL Pointer Dereference in SPS-HLOS
Published 2025-07-08 · Analyzed
6.2EPSS 0.001
CVE-2023-28571
Buffer Over-read in WLAN HOST
Published 2023-10-03 · Modified
6.1EPSS 0.001
CVE-2020-3664
Out of bound read access in hypervisor due to an invalid read access attempt by passing invalid addresses in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-02-22 · Modified
6.0EPSS 0.002
CVE-2020-11293
Out of bound read can happen in Widevine TA while copying data to buffer from user data due to lack of check of buffer length received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-05-07 · Modified
6.0EPSS 0.002
CVE-2020-11221
Usage of syscall by non-secure entity can allow extraction of secure QTEE diagnostic information in clear text form due to insufficient checks in the syscall handler and leads to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-03-17 · Modified
5.5EPSS 0.002
CVE-2020-11199
HLOS to access EL3 stack canary by just mapping imem region due to Improper access control and can lead to information exposure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-03-17 · Modified
5.5EPSS 0.002
CVE-2020-11186
Modem will enter into busy mode in an infinite loop while parsing histogram dimension due to improper validation of input received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile
Published 2021-03-17 · Modified
5.5EPSS 0.002
CVE-2024-43046
Information Exposure in TZ Secure OS
Published 2025-04-07 · Analyzed
5.5EPSS 0.001
CVE-2024-43051
Improper Authorization in SPS-HLOS
Published 2025-03-03 · Analyzed
5.5EPSS 0.001
CVE-2024-33043
Buffer Over-read in FM Host
Published 2024-09-02 · Analyzed
5.5EPSS 0.001
CVE-2021-1903
Possible denial of service scenario can occur due to lack of length check on Channel Switch Announcement IE in beacon or probe response frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-11-12 · Modified
5.3EPSS 0.005
CVE-2021-1967
Possible stack buffer overflow due to lack of check on the maximum number of post NAN discovery attributes while processing a NAN Match event in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-10-20 · Modified
5.3EPSS 0.001
CVE-2022-22078
Denial of service in BOOT when partition size for a particular partition is requested due to integer overflow when blocks are calculated in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2022-10-12 · Modified
4.6EPSS 0.002
← Prev11 / 11