VendorsQualcommqca9888_firmwareany version
Vulnerabilities

Qualcomm QCA9888 Firmware any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

219CVEs
CVE-2021-1965
Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Published 2021-07-13 · Modified
10.0EPSS 0.030
CVE-2021-1972
Possible buffer overflow due to improper validation of device types during P2P search in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-09-08 · Modified
10.0EPSS 0.008
CVE-2020-11134
Possible stack out of bound write might happen due to time bitmap length and bit duration fields of the attributes like NAN ranging setup attribute inside a NAN management frame are not Properly validated in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
10.0EPSS 0.008
CVE-2021-1976
A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-09-17 · Modified
10.0EPSS 0.008
CVE-2021-30351
An out of bound memory access can occur due to improper validation of number of frames being passed during music playback in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
9.8EPSS 0.040
CVE-2024-21473
Improper Input Validation in WIN SON
Published 2024-04-01 · Analyzed
9.8EPSS 0.007
CVE-2022-33279
Stack based buffer overflow in WLAN
Published 2023-02-09 · Modified
9.8EPSS 0.006
CVE-2024-33066
Improper Input Validation in WLAN Resource Manager
Published 2024-10-07 · Analyzed
9.8EPSS 0.006
CVE-2024-45569
Improper Validation of Array Index in WLAN Host Communication
Published 2025-02-03 · Analyzed
9.8EPSS 0.006
CVE-2023-33028
Buffer Copy without Checking Size of Input in WLAN Firmware
Published 2023-10-03 · Modified
9.8EPSS 0.005
CVE-2023-33082
Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in WLAN Host
Published 2023-12-05 · Modified
9.8EPSS 0.005
CVE-2023-33083
Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in WLAN Host
Published 2023-12-05 · Modified
9.8EPSS 0.005
CVE-2022-25748
Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-10-19 · Modified
9.8EPSS 0.005
CVE-2022-40514
Buffer copy without checking size of input in WLAN Firmware
Published 2023-02-09 · Modified
9.8EPSS 0.005
CVE-2023-33045
Buffer Copy Without Checking Size of Input in WLAN Firmware
Published 2023-11-07 · Modified
9.8EPSS 0.005
CVE-2023-43553
Use of Out-of-range Pointer Offset in WLAN HOST
Published 2024-03-04 · Analyzed
9.8EPSS 0.004
CVE-2023-43552
Use After Free in WLAN Host Communication
Published 2024-03-04 · Analyzed
9.8EPSS 0.004
CVE-2024-49839
Buffer Over-read in WLAN Host Cmn
Published 2025-02-03 · Analyzed
9.8EPSS 0.003
CVE-2020-11275
Possible buffer over-read while parsing quiet IE in Rx beacon frame due to improper check of IE length in received beacon in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-02-22 · Modified
9.4EPSS 0.008
CVE-2020-11126
Possible out of bound read while WLAN frame parsing due to lack of check for body and header length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
9.4EPSS 0.008
CVE-2023-28578
Improper Input Validation in Services
Published 2024-03-04 · Analyzed
9.3EPSS 0.001
CVE-2020-11301
Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-09-08 · Modified
9.1EPSS 0.111
CVE-2021-35088
Possible out of bound read due to improper validation of IE length during SSID IE parse when channel is DFS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-04-01 · Modified
9.1EPSS 0.009
CVE-2021-1980
Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-10-20 · Modified
9.1EPSS 0.006
CVE-2022-25719
Information disclosure in WLAN due to improper length check while processing authentication handshake in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-10-19 · Modified
9.1EPSS 0.005
CVE-2021-1924
Information disclosure through timing and power side-channels during mod exponentiation for RSA-CRT in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-11-12 · Modified
9.0EPSS 0.002
CVE-2022-25652
Cryptographic issues in BSP due to improper hash verification in Snapdragon Wired Infrastructure and Networking
Published 2022-09-16 · Modified
9.0EPSS 0.001
CVE-2020-11258
Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
8.8EPSS 0.002
CVE-2020-11259
Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
8.8EPSS 0.002
CVE-2020-11257
Memory corruption due to lack of validation of pointer arguments passed to TrustZone BSP in Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
8.8EPSS 0.002
CVE-2020-11256
Memory corruption due to lack of check of validation of pointer to buffer passed to trustzone in Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
8.8EPSS 0.002
CVE-2026-25268
Stack-based Buffer Overflow in WLAN Host
Published 2026-07-06 · Analyzed
8.8EPSS 0.001
CVE-2025-27074
Incorrect Calculation of Buffer Size in SCE-Mink
Published 2025-11-04 · Analyzed
8.8EPSS 0.001
CVE-2020-11267
Stack out-of-bounds write occurs while setting up a cipher device if the provided IV length exceeds the max limit value in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
8.4EPSS 0.002
CVE-2021-30288
Possible stack overflow due to improper length check of TLV while copying the TLV to a local stack variable in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-10-20 · Modified
8.4EPSS 0.002
CVE-2021-1947
Use-after-free vulnerability in kernel graphics driver because of storing an invalid pointer in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-09-17 · Modified
8.4EPSS 0.002
CVE-2021-1927
Possible use after free due to lack of null check while memory is being freed in FastRPC driver in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-05-07 · Modified
8.4EPSS 0.002
CVE-2023-33088
NULL pointer dereference in WLAN Firmware
Published 2023-12-05 · Modified
8.4EPSS 0.002
CVE-2021-30335
Possible assertion in QOS request due to improper validation when multiple add or update request are received simultaneously in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
8.4EPSS 0.002
CVE-2021-30337
Possible use after free when process shell memory is freed using IOCTL call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
8.4EPSS 0.002
1 / 6Next →