VendorsQualcommqsm8250_firmwareall versions
Vulnerabilities

Qualcomm QSM8250 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

194CVEs
CVE-2021-30274
Possible integer overflow in access control initialization interface due to lack and size and address validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
8.4EPSS 0.002
CVE-2021-30282
Possible out of bound write in RAM partition table due to improper validation on number of partitions provided in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
8.4EPSS 0.002
CVE-2021-30335
Possible assertion in QOS request due to improper validation when multiple add or update request are received simultaneously in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
8.4EPSS 0.002
CVE-2021-30337
Possible use after free when process shell memory is freed using IOCTL call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
8.4EPSS 0.002
CVE-2022-25743
Memory corruption in graphics due to use-after-free while importing graphics buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2022-11-15 · Modified
8.4EPSS 0.001
CVE-2021-30262
Improper validation of a socket state when socket events are being sent to clients can lead to invalid access of memory in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2022-01-03 · Modified
8.4EPSS 0.001
CVE-2022-40517
Stack based buffer overflow in Core
Published 2023-01-06 · Modified
8.4EPSS 0.001
CVE-2021-1939
Null pointer dereference occurs due to improper validation when the preemption feature enablement is toggled in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wearables
Published 2021-09-17 · Modified
8.4EPSS 0.001
CVE-2022-40530
Integer overflow to buffer overflow in WLAN
Published 2023-03-07 · Modified
8.4EPSS 0.001
CVE-2023-24852
Improper Authentication in Core
Published 2023-11-07 · Modified
8.4EPSS 0.001
CVE-2022-33277
Buffer copy without checking size of input in modem
Published 2023-02-09 · Modified
8.4EPSS 0.001
CVE-2022-40531
Incorrect type conversion in WLAN
Published 2023-03-07 · Modified
8.4EPSS 0.001
CVE-2022-25724
Memory corruption in graphics due to buffer overflow while validating the user address in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2022-11-15 · Modified
8.4EPSS 0.001
CVE-2023-33033
Use of Out-of-range Pointer Offset in Audio
Published 2024-01-02 · Modified
8.4EPSS 0.001
CVE-2023-28537
Integer Overflow or Wraparound in Audio
Published 2023-08-08 · Modified
8.4EPSS 0.001
CVE-2022-40532
Integer overflow or wraparound in WLAN
Published 2023-04-04 · Modified
8.4EPSS 0.001
CVE-2023-22667
Integer Overflow or Wraparound in Audio
Published 2023-07-04 · Modified
8.4EPSS 0.001
CVE-2023-28538
Stack-based Buffer Overflow in WIN Product
Published 2023-09-05 · Modified
8.4EPSS 0.001
CVE-2023-22666
Integer Overflow or Wraparound in Audio
Published 2023-08-08 · Modified
8.4EPSS 0.001
CVE-2022-33275
Improper validation of array index in WLAN HAL
Published 2023-09-05 · Modified
8.4EPSS 0.001
CVE-2023-28547
Buffer Copy Without Checking Size of Input in SPS Applications
Published 2024-04-01 · Analyzed
8.4EPSS 0.001
CVE-2023-33066
Use of Out-of-range Pointer Offset in Audio
Published 2024-03-04 · Analyzed
8.4EPSS 0.001
CVE-2023-33023
Buffer Copy without Checking Size of Input (`Classic Buffer Overflow`) in SPS-Applications
Published 2024-04-01 · Analyzed
8.4EPSS 0.001
CVE-2024-21468
Use After Free in Kernel
Published 2024-04-01 · Analyzed
8.4EPSS 0.001
CVE-2022-33243
Improper access control in Qualcomm IPC
Published 2023-02-09 · Modified
8.4EPSS 0.001
CVE-2024-33044
Improper Validation of Array Index in Hypervisor
Published 2024-12-02 · Analyzed
8.4EPSS 0.001
CVE-2024-33056
Buffer Over-read in MProc
Published 2024-12-02 · Analyzed
8.4EPSS 0.001
CVE-2024-21461
Double Free in HLOS
Published 2024-07-01 · Modified
8.4EPSS 0.001
CVE-2022-33235
Information disclosure due to buffer over-read in WLAN firmware while parsing security context info attributes. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-12-13 · Modified
8.2EPSS 0.004
CVE-2022-33271
Buffer over-read in WLAN
Published 2023-02-09 · Modified
8.2EPSS 0.004
CVE-2022-33252
Buffer over-read in WLAN
Published 2023-01-06 · Modified
8.2EPSS 0.002
CVE-2020-11263
An integer overflow due to improper check performed after the address and size passed are aligned in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
8.2EPSS 0.002
CVE-2021-30349
Improper access control sequence for AC database after memory allocation can lead to possible memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-06-14 · Modified
8.2EPSS 0.002
CVE-2023-28545
Improper Restriction of Operations within the Bounds of a Memory Buffer in TZ Secure OS
Published 2023-11-07 · Modified
8.2EPSS 0.001
CVE-2020-11206
Possible buffer overflow in Fastrpc while handling received parameters due to lack of validation on input parameters' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8098, MSM8998, QCM4290, QCM6125, QCS410, QCS4290, QCS610, QCS6125, QSM8250, QSM8350, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155, SA8155P, SA8195P, SC7180, SDA640, SDA660, SDA845, SDA855, SDM640, SDM660, SDM830, SDM845, SDM850, SDX50M, SDX55, SDX55M, SM4250, SM4250P, SM6115, SM6115P, SM6125, SM6150, SM6150P, SM6250, SM6250P, SM6350, SM7125, SM7150, SM7150P, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SM8350, SM8350P, SXR2130, SXR2130P
Published 2020-11-12 · Modified
7.8EPSS 0.018
CVE-2020-11207
Buffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8052, APQ8056, APQ8076, APQ8096, APQ8096SG, APQ8098, MDM9655, MSM8952, MSM8956, MSM8976, MSM8976SG, MSM8996, MSM8996SG, MSM8998, QCM4290, QCM6125, QCS410, QCS4290, QCS610, QCS6125, QSM8250, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155, SA8155P, SA8195P, SC7180, SDA640, SDA660, SDA845, SDA855, SDM640, SDM660, SDM830, SDM845, SDM850, SDX50M, SDX55, SDX55M, SM4250, SM4250P, SM6115, SM6115P, SM6125, SM6150, SM6150P, SM6250, SM6250P, SM6350, SM7125, SM7150, SM7150P, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SXR2130, SXR2130P
Published 2020-11-12 · Modified
7.8EPSS 0.015
CVE-2023-33063
Use After Free in DSP Services
Published 2023-12-05 · Analyzed
7.8KEVEPSS 0.007
CVE-2020-11181
Out of bound access issue while handling cvp process control command due to improper validation of buffer pointer received from HLOS in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2021-01-21 · Modified
7.8EPSS 0.002
CVE-2020-11127
u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security metadata while processing objects to be loaded' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in MDM9205, QCM4290, QCS405, QCS410, QCS4290, QCS610, QSM8250, SA415M, SA515M, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155, SA8155P, SA8195P, SC7180, SC8180X, SC8180X+SDX55, SC8180XP, SDA640, SDA845, SDA855, SDM1000, SDM640, SDM830, SDM845, SDM850, SDX24, SDX50M, SDX55, SDX55M, SM4125, SM4250, SM4250P, SM6115, SM6115P, SM6150, SM6150P, SM6250, SM6250P, SM6350, SM7125, SM7150, SM7150P, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SXR2130, SXR2130P
Published 2020-11-12 · Modified
7.8EPSS 0.002
CVE-2020-11304
Possible out of bound read in DRM due to improper buffer length check. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
7.8EPSS 0.002
← Prev2 / 5Next →