VendorsQualcommqcs2290_firmwareall versions
Vulnerabilities

Qualcomm QCS2290 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

437CVEs
CVE-2025-47398
Use After Free in Graphics
Published 2026-02-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47397
Improper Release of Memory Before Removing Last Reference in Graphics
Published 2026-02-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47322
Use After Free in Automotive Linux OS
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-27063
Use After Free in Video
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-47389
Buffer Copy Without Checking Size of Input in Automotive Platform
Published 2026-04-06 · Analyzed
7.8EPSS 0.001
CVE-2022-22069
Devices with keyprotect off may store unencrypted keybox in RPMB and cause cryptographic issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2022-09-02 · Modified
7.8EPSS 0.001
CVE-2022-40529
Improper access control in Kernel
Published 2023-06-06 · Modified
7.8EPSS 0.001
CVE-2025-47323
Integer Overflow or Wraparound in Audio
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-27043
Buffer Copy Without Checking Size of Input in Video
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-27052
Buffer Copy Without Checking Size of Input in Core Services
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-27053
Incorrect Calculation of Buffer Size in HLOS
Published 2025-10-09 · Analyzed
7.8EPSS 0.001
CVE-2025-27054
Out-of-bounds Write in Display
Published 2025-10-09 · Analyzed
7.8EPSS 0.001
CVE-2025-21432
Double Free in SPS-HLOS
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-47320
Out-of-bounds Write in Audio
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-47348
Use of Uninitialized Variable in HLOS
Published 2026-01-06 · Analyzed
7.8EPSS 0.001
CVE-2026-24082
Use After Free in Automotive GPU
Published 2026-05-04 · Analyzed
7.8EPSS 0.001
CVE-2025-59604
NULL Pointer Dereference in SPS Applications
Published 2026-06-01 · Analyzed
7.8EPSS 0.001
CVE-2025-59605
Out-of-bounds Write in HLOS
Published 2026-06-01 · Analyzed
7.8EPSS 0.001
CVE-2025-59600
Buffer Over-read in Graphics
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-21481
Buffer Copy Without Checking Size of Input in HLOS
Published 2025-09-24 · Analyzed
7.8EPSS 0.001
CVE-2025-47375
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47386
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47376
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47379
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47377
Use After Free in Automotive Audio
Published 2026-03-02 · Analyzed
7.8EPSS 0.001
CVE-2025-47404
Buffer Copy Without Checking Size of Input in Automotive Audio
Published 2026-05-04 · Analyzed
7.8EPSS 0.001
CVE-2025-47407
Time-of-check Time-of-use (TOCTOU) Race Condition in DSP Service
Published 2026-05-04 · Analyzed
7.8EPSS 0.001
CVE-2021-35116
APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2022-06-14 · Modified
7.7EPSS 0.002
CVE-2023-21652
Key Management Errors in HLOS
Published 2023-08-08 · Modified
7.7EPSS 0.001
CVE-2026-25292
Improper Validation of Syntactic Correctness of Input in Automotive Linux OS
Published 2026-08-04 · Analyzed
7.6EPSS 0.002
CVE-2020-11226
Out of bound memory read in Data modem while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-03-17 · Modified
7.5EPSS 0.009
CVE-2020-11218
Denial of service in baseband when NW configures LTE betaOffset-RI-Index due to lack of data validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2021-03-17 · Modified
7.5EPSS 0.008
CVE-2022-25736
Denial of service in WLAN due to out-of-bound read happens while processing VHT action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-10-19 · Modified
7.5EPSS 0.008
CVE-2020-11281
Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to information disclosure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-02-22 · Modified
7.5EPSS 0.007
CVE-2021-30312
Improper authentication of sub-frames of a multicast AMSDU frame can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-10-20 · Modified
7.5EPSS 0.006
CVE-2021-1970
Possible out of bound read due to lack of length check of FT sub-elements in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2021-07-13 · Modified
7.5EPSS 0.006
CVE-2021-30310
Possible buffer overflow due to Improper validation of received CF-ACK and CF-Poll data frames in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2021-10-20 · Modified
7.5EPSS 0.006
CVE-2021-1938
Possible assertion due to improper verification while creating and deleting the peer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-07-13 · Modified
7.5EPSS 0.006
CVE-2021-1945
Possible out of bound read due to lack of length check of Bandwidth-NSS IE in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-07-13 · Modified
7.5EPSS 0.006
CVE-2021-1955
Denial of service in SAP case due to improper handling of connections when association is rejected in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-07-13 · Modified
7.5EPSS 0.006
← Prev8 / 11Next →