VendorsQualcommqca9984_firmwareall versions
Vulnerabilities

Qualcomm QCA9984 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

219CVEs
CVE-2021-1965
Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Published 2021-07-13 · Modified
10.0EPSS 0.030
CVE-2021-1972
Possible buffer overflow due to improper validation of device types during P2P search in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-09-08 · Modified
10.0EPSS 0.008
CVE-2020-11134
Possible stack out of bound write might happen due to time bitmap length and bit duration fields of the attributes like NAN ranging setup attribute inside a NAN management frame are not Properly validated in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
10.0EPSS 0.008
CVE-2021-1976
A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-09-17 · Modified
10.0EPSS 0.008
CVE-2021-30351
An out of bound memory access can occur due to improper validation of number of frames being passed during music playback in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
9.8EPSS 0.040
CVE-2024-21473
Improper Input Validation in WIN SON
Published 2024-04-01 · Analyzed
9.8EPSS 0.007
CVE-2022-33279
Stack based buffer overflow in WLAN
Published 2023-02-09 · Modified
9.8EPSS 0.006
CVE-2023-33028
Buffer Copy without Checking Size of Input in WLAN Firmware
Published 2023-10-03 · Modified
9.8EPSS 0.005
CVE-2023-33082
Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in WLAN Host
Published 2023-12-05 · Modified
9.8EPSS 0.005
CVE-2023-33083
Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in WLAN Host
Published 2023-12-05 · Modified
9.8EPSS 0.005
CVE-2022-25748
Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-10-19 · Modified
9.8EPSS 0.005
CVE-2022-40514
Buffer copy without checking size of input in WLAN Firmware
Published 2023-02-09 · Modified
9.8EPSS 0.005
CVE-2022-40510
Buffer copy without checking size of input in Audio.
Published 2023-08-08 · Modified
9.8EPSS 0.004
CVE-2020-11275
Possible buffer over-read while parsing quiet IE in Rx beacon frame due to improper check of IE length in received beacon in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-02-22 · Modified
9.4EPSS 0.008
CVE-2020-11126
Possible out of bound read while WLAN frame parsing due to lack of check for body and header length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
9.4EPSS 0.008
CVE-2021-30317
Improper validation of program headers containing ELF metadata can lead to image verification bypass in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2022-02-11 · Modified
9.3EPSS 0.014
CVE-2020-11210
Possible memory corruption in RPM region due to improper XPU configuration in Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Published 2021-04-07 · Modified
9.3EPSS 0.002
CVE-2021-1942
Improper handling of permissions of a shared memory region can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-04-01 · Modified
9.3EPSS 0.002
CVE-2021-30275
Possible integer overflow in page alignment interface due to lack of address and size validation before alignment in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
9.3EPSS 0.002
CVE-2021-30276
Improper access control while doing XPU re-configuration dynamically can lead to unauthorized access to a secure resource in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
9.3EPSS 0.002
CVE-2021-30285
Improper validation of memory region in Hypervisor can lead to incorrect region mapping in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2022-01-13 · Modified
9.3EPSS 0.001
CVE-2023-28578
Improper Input Validation in Services
Published 2024-03-04 · Analyzed
9.3EPSS 0.001
CVE-2023-33030
Buffer Copy without Checking Size of Input in HLOS
Published 2024-01-02 · Modified
9.3EPSS 0.001
CVE-2023-21651
Incorrect Type Conversion or Cast in Core
Published 2023-08-08 · Modified
9.3EPSS 0.001
CVE-2023-33072
Buffer copy without checking size of Input in Core
Published 2024-02-06 · Modified
9.3EPSS 0.001
CVE-2022-33257
Time-of-check time-of-use race condition in Core
Published 2023-03-07 · Modified
9.3EPSS 0.001
CVE-2022-33231
Double free in Core
Published 2023-04-04 · Modified
9.3EPSS 0.001
CVE-2020-11301
Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-09-08 · Modified
9.1EPSS 0.111
CVE-2021-35088
Possible out of bound read due to improper validation of IE length during SSID IE parse when channel is DFS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-04-01 · Modified
9.1EPSS 0.009
CVE-2021-1980
Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-10-20 · Modified
9.1EPSS 0.006
CVE-2022-22062
An out-of-bounds read can occur while parsing a server certificate due to improper length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-09-02 · Modified
9.1EPSS 0.003
CVE-2021-1924
Information disclosure through timing and power side-channels during mod exponentiation for RSA-CRT in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-11-12 · Modified
9.0EPSS 0.002
CVE-2021-30339
Reading PRNG output may lead to improper key generation due to lack of buffer validation in Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-06-14 · Modified
9.0EPSS 0.002
CVE-2020-11257
Memory corruption due to lack of validation of pointer arguments passed to TrustZone BSP in Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
8.8EPSS 0.002
CVE-2020-11258
Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
8.8EPSS 0.002
CVE-2020-11259
Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
8.8EPSS 0.002
CVE-2020-11256
Memory corruption due to lack of check of validation of pointer to buffer passed to trustzone in Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
8.8EPSS 0.002
CVE-2023-28585
Integer Overflow to Buffer Overflow in TZ Secure OS
Published 2023-12-05 · Modified
8.8EPSS 0.001
CVE-2025-27074
Incorrect Calculation of Buffer Size in SCE-Mink
Published 2025-11-04 · Analyzed
8.8EPSS 0.001
CVE-2022-40507
Double free in Core
Published 2023-06-06 · Modified
8.4EPSS 0.013
1 / 6Next →