VendorsQualcommqca6574au_firmwareany version
Vulnerabilities

Qualcomm QCA6574AU Firmware any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1074CVEs
CVE-2025-47365
Integer Overflow or Wraparound in Automotive Platform
Published 2025-11-04 · Analyzed
7.8EPSS 0.001
CVE-2025-47360
Stack-based Buffer Overflow in Automotive Software platform based on QNX
Published 2025-11-04 · Analyzed
7.8EPSS 0.001
CVE-2025-47321
Buffer Copy Without Checking Size of Input in Core Services
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-47320
Out-of-bounds Write in Audio
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-47348
Use of Uninitialized Variable in HLOS
Published 2026-01-06 · Analyzed
7.8EPSS 0.001
CVE-2025-27062
Improper Access Control in Automotive Multimedia
Published 2025-08-06 · Analyzed
7.8EPSS 0.001
CVE-2025-47339
Use After Free in HLOS
Published 2026-01-06 · Analyzed
7.8EPSS 0.001
CVE-2025-47346
Out-of-bounds Write in HLOS
Published 2026-01-06 · Analyzed
7.8EPSS 0.001
CVE-2025-27032
Improper Access Control Applied to Mirrored or Aliased Memory Regions in Hypervisor
Published 2025-09-24 · Analyzed
7.8EPSS 0.001
CVE-2025-59606
NULL Pointer Dereference in HLOS
Published 2026-06-01 · Analyzed
7.8EPSS 0.001
CVE-2024-38418
Time-of-check Time-of-use (TOCTOU) Race Condition in Camera Linux
Published 2025-02-03 · Analyzed
7.8EPSS 0.001
CVE-2025-59605
Out-of-bounds Write in HLOS
Published 2026-06-01 · Analyzed
7.8EPSS 0.001
CVE-2025-59604
NULL Pointer Dereference in SPS Applications
Published 2026-06-01 · Analyzed
7.8EPSS 0.001
CVE-2026-24082
Use After Free in Automotive GPU
Published 2026-05-04 · Analyzed
7.8EPSS 0.001
CVE-2025-59600
Buffer Over-read in Graphics
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-21481
Buffer Copy Without Checking Size of Input in HLOS
Published 2025-09-24 · Analyzed
7.8EPSS 0.001
CVE-2025-47375
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47373
Out-of-bounds Write in Automotive
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47386
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47376
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47379
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47377
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47381
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47385
Improper Access Control for Register Interface in SCE-Mink
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47404
Buffer Copy Without Checking Size of Input in Automotive Audio
Published 2026-05-04 · Analyzed
7.8EPSS 0.001
CVE-2025-27070
Out-of-bounds Write in Windows Compute
Published 2025-11-04 · Analyzed
7.8EPSS 0.001
CVE-2026-25278
Time-of-check Time-of-use (TOCTOU) Race Condition in Automotive Software platform based on QNX
Published 2026-09-17 · Analyzed
7.8EPSS 0.001
CVE-2021-35116
APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2022-06-14 · Modified
7.7EPSS 0.002
CVE-2024-45549
Exposure of Sensitive System Information to an Unauthorized Control Sphere in KERNEL
Published 2025-04-07 · Analyzed
7.7EPSS 0.001
CVE-2023-21652
Key Management Errors in HLOS
Published 2023-08-08 · Modified
7.7EPSS 0.001
CVE-2026-25292
Improper Validation of Syntactic Correctness of Input in Automotive Linux OS
Published 2026-08-04 · Analyzed
7.6EPSS 0.002
CVE-2020-3700
Possible out of bounds read due to a missing bounds check and could lead to local information disclosure in the wifi driver with no additional execution privileges needed in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8053, APQ8096AU, IPQ4019, IPQ8064, IPQ8074, MDM9607, MSM8909W, MSM8996AU, QCA6574AU, QCA9531, QCA9558, QCA9980, SC8180X, SDM439, SDX55, SM8150, SM8250, SXR2130
Published 2020-07-30 · Modified
7.5EPSS 0.011
CVE-2017-18126
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9640, MDM9650, QCA6174A, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA9377, QCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 808, SD 810, SD 820, SD 835, SD 845, SDM630, SDM636, SDM660, Snapdragon_High_Med_2016, the original mac spoofing feature does not use the following in probe request frames: (a) randomized sequence numbers and (b) randomized source address for cfg80211 scan, vendor scan and pno scan which may affect user privacy.
Published 2018-04-11 · Modified
7.5EPSS 0.009
CVE-2020-11226
Out of bound memory read in Data modem while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-03-17 · Modified
7.5EPSS 0.009
CVE-2018-11290
In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA6574AU, QCA6584, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 650/52, SD 820A, SD 845, SDM429, SDM439, SDM630, SDM632, SDM636, SDM660, SDX20, Snapdragon_High_Med_2016, MAC address randomization performed during probe requests is not done properly due to a flawed RNG in use.
Published 2018-09-20 · Modified
7.5EPSS 0.008
CVE-2017-18072
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9640, MDM9650, QCA4531, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA9377, QCA9378, QCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 808, SD 810, SD 820, SD 835, SD 845, SDM630, SDM636, SDM660, Snapdragon_High_Med_2016, the probe requests originated from user's phone contains the information elements which specifies the supported wifi features. This shall impact the user's privacy if someone sniffs the probe requests originated by this DUT. Hence, control the presence of which information elements is supported.
Published 2018-04-11 · Modified
7.5EPSS 0.008
CVE-2020-11218
Denial of service in baseband when NW configures LTE betaOffset-RI-Index due to lack of data validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2021-03-17 · Modified
7.5EPSS 0.008
CVE-2019-10488
Null pointer dereference can occur while parsing invalid chunks while playing the nonstandard clip in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, QCA6574AU, QCS405, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 600, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20
Published 2019-11-06 · Modified
7.5EPSS 0.008
CVE-2018-11291
In Snapdragon (Automobile, Mobile, Wear) in version IPQ8074, MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA4531, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA9377, QCA9378, QCA9379, SD 425, SD 427, SD 430, SD 435, SD 450, SD 600, SD 625, SD 650/52, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, SDM630, SDM632, SDM636, SDM660, SDX20, Snapdragon_High_Med_2016, cryptographic issues due to the random number generator was not a strong one in NAN.
Published 2018-09-20 · Modified
7.5EPSS 0.008
CVE-2020-11119
Buffer over-read can happen when the buffer length received from response handlers is more than the size of the payload in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-01-21 · Modified
7.5EPSS 0.008
← Prev19 / 27Next →