VendorsQualcommqcm2290_firmwareall versions
Vulnerabilities

Qualcomm QCM2290 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

442CVEs
CVE-2024-38415
Use After Free in Computer Vision
Published 2024-11-04 · Analyzed
7.8EPSS 0.001
CVE-2024-21469
Permissions, Privileges, and Access Control issues in TZ Secure OS
Published 2024-07-01 · Modified
7.8EPSS 0.001
CVE-2024-23368
Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Qualcomm IPC
Published 2024-07-01 · Modified
7.8EPSS 0.001
CVE-2025-21453
Use After Free in GPS HLOS Driver
Published 2025-05-06 · Analyzed
7.8EPSS 0.001
CVE-2024-38423
Buffer Copy Without Checking Size of Input in Graphics Linux
Published 2024-11-04 · Analyzed
7.8EPSS 0.001
CVE-2023-43542
Buffer Copy Without Checking Size of Input in Trusted Execution Environment
Published 2024-06-03 · Analyzed
7.8EPSS 0.001
CVE-2025-47398
Use After Free in Graphics
Published 2026-02-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47397
Improper Release of Memory Before Removing Last Reference in Graphics
Published 2026-02-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47322
Use After Free in Automotive Linux OS
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-27063
Use After Free in Video
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-47389
Buffer Copy Without Checking Size of Input in Automotive Platform
Published 2026-04-06 · Analyzed
7.8EPSS 0.001
CVE-2022-22069
Devices with keyprotect off may store unencrypted keybox in RPMB and cause cryptographic issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2022-09-02 · Modified
7.8EPSS 0.001
CVE-2022-40529
Improper access control in Kernel
Published 2023-06-06 · Modified
7.8EPSS 0.001
CVE-2025-47323
Integer Overflow or Wraparound in Audio
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-27061
Out-of-bounds Write in Video
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-27043
Buffer Copy Without Checking Size of Input in Video
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-27052
Buffer Copy Without Checking Size of Input in Core Services
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-27053
Incorrect Calculation of Buffer Size in HLOS
Published 2025-10-09 · Analyzed
7.8EPSS 0.001
CVE-2025-27054
Out-of-bounds Write in Display
Published 2025-10-09 · Analyzed
7.8EPSS 0.001
CVE-2025-21432
Double Free in SPS-HLOS
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-27042
Incorrect Calculation of Buffer Size in Video
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-47320
Out-of-bounds Write in Audio
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-47348
Use of Uninitialized Variable in HLOS
Published 2026-01-06 · Analyzed
7.8EPSS 0.001
CVE-2025-59605
Out-of-bounds Write in HLOS
Published 2026-06-01 · Analyzed
7.8EPSS 0.001
CVE-2025-59604
NULL Pointer Dereference in SPS Applications
Published 2026-06-01 · Analyzed
7.8EPSS 0.001
CVE-2026-24082
Use After Free in Automotive GPU
Published 2026-05-04 · Analyzed
7.8EPSS 0.001
CVE-2025-59600
Buffer Over-read in Graphics
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-21481
Buffer Copy Without Checking Size of Input in HLOS
Published 2025-09-24 · Analyzed
7.8EPSS 0.001
CVE-2025-47377
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47376
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47375
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47379
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47386
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47404
Buffer Copy Without Checking Size of Input in Automotive Audio
Published 2026-05-04 · Analyzed
7.8EPSS 0.001
CVE-2025-47407
Time-of-check Time-of-use (TOCTOU) Race Condition in DSP Service
Published 2026-05-04 · Analyzed
7.8EPSS 0.001
CVE-2021-35116
APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2022-06-14 · Modified
7.7EPSS 0.002
CVE-2023-21652
Key Management Errors in HLOS
Published 2023-08-08 · Modified
7.7EPSS 0.001
CVE-2026-25292
Improper Validation of Syntactic Correctness of Input in Automotive Linux OS
Published 2026-08-04 · Analyzed
7.6EPSS 0.002
CVE-2020-11226
Out of bound memory read in Data modem while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-03-17 · Modified
7.5EPSS 0.009
CVE-2020-11218
Denial of service in baseband when NW configures LTE betaOffset-RI-Index due to lack of data validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2021-03-17 · Modified
7.5EPSS 0.008
← Prev8 / 12Next →