VendorsQualcommsdx55_firmwareall versions
Vulnerabilities

Qualcomm SDX55 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

809CVEs
CVE-2024-38415
Use After Free in Computer Vision
Published 2024-11-04 · Analyzed
7.8EPSS 0.001
CVE-2024-38422
Integer Overflow to Buffer Overflow in Audio
Published 2024-11-04 · Analyzed
7.8EPSS 0.001
CVE-2022-40529
Improper access control in Kernel
Published 2023-06-06 · Modified
7.8EPSS 0.001
CVE-2024-43067
Time-of-check Time-of-use (TOCTOU) Race Condition in Camera
Published 2025-04-07 · Analyzed
7.8EPSS 0.001
CVE-2025-21422
Cryptographic Issues in Automotive
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2024-49842
Improper Access Control in Hypervisor
Published 2025-05-06 · Analyzed
7.8EPSS 0.001
CVE-2025-27061
Out-of-bounds Write in Video
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-27053
Incorrect Calculation of Buffer Size in HLOS
Published 2025-10-09 · Analyzed
7.8EPSS 0.001
CVE-2025-27054
Out-of-bounds Write in Display
Published 2025-10-09 · Analyzed
7.8EPSS 0.001
CVE-2024-53009
Improper Validation of Array Index in Automotive Autonomy
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2024-53010
Improper Access Control in Core
Published 2025-06-03 · Analyzed
7.8EPSS 0.001
CVE-2025-27042
Incorrect Calculation of Buffer Size in Video
Published 2025-07-08 · Analyzed
7.8EPSS 0.001
CVE-2025-47320
Out-of-bounds Write in Audio
Published 2025-12-18 · Analyzed
7.8EPSS 0.001
CVE-2025-47339
Use After Free in HLOS
Published 2026-01-06 · Analyzed
7.8EPSS 0.001
CVE-2025-27062
Improper Access Control in Automotive Multimedia
Published 2025-08-06 · Analyzed
7.8EPSS 0.001
CVE-2025-27032
Improper Access Control Applied to Mirrored or Aliased Memory Regions in Hypervisor
Published 2025-09-24 · Analyzed
7.8EPSS 0.001
CVE-2024-38418
Time-of-check Time-of-use (TOCTOU) Race Condition in Camera Linux
Published 2025-02-03 · Analyzed
7.8EPSS 0.001
CVE-2025-21455
Time-of-check Time-of-use (TOCTOU) Race Condition in Camera_Linux
Published 2025-08-06 · Analyzed
7.8EPSS 0.001
CVE-2021-35116
APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2022-06-14 · Modified
7.7EPSS 0.002
CVE-2024-45549
Exposure of Sensitive System Information to an Unauthorized Control Sphere in KERNEL
Published 2025-04-07 · Analyzed
7.7EPSS 0.001
CVE-2020-3700
Possible out of bounds read due to a missing bounds check and could lead to local information disclosure in the wifi driver with no additional execution privileges needed in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8053, APQ8096AU, IPQ4019, IPQ8064, IPQ8074, MDM9607, MSM8909W, MSM8996AU, QCA6574AU, QCA9531, QCA9558, QCA9980, SC8180X, SDM439, SDX55, SM8150, SM8250, SXR2130
Published 2020-07-30 · Modified
7.5EPSS 0.011
CVE-2020-11218
Denial of service in baseband when NW configures LTE betaOffset-RI-Index due to lack of data validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2021-03-17 · Modified
7.5EPSS 0.008
CVE-2022-25736
Denial of service in WLAN due to out-of-bound read happens while processing VHT action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-10-19 · Modified
7.5EPSS 0.008
CVE-2023-33105
Configuration Issue in WLAN Host and Firmware
Published 2024-03-04 · Analyzed
7.5EPSS 0.008
CVE-2020-11115
u'Buffer over read occurs while processing information element from beacon due to lack of check of data received from beacon' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, APQ8096AU, APQ8098, Bitra, Kamorta, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCM2150, QCN7605, QCS405, QCS605, QM215, Rennell, SA415M, Saipan, SC8180X, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM660, SDM845, SDX20, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130
Published 2020-09-08 · Modified
7.5EPSS 0.007
CVE-2020-11118
u'Information exposure issues while processing IE header due to improper check of beacon IE frame' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, Bitra, Kamorta, MDM9150, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8998, Nicobar, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCM2150, QCN7605, QCS405, QCS605, QCS610, QM215, Rennell, Saipan, SC8180X, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Published 2020-09-08 · Modified
7.5EPSS 0.007
CVE-2021-30302
Improper authentication of EAP WAPI EAPOL frames from unauthenticated user can lead to information disclosure in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Published 2021-10-20 · Modified
7.5EPSS 0.007
CVE-2019-2335
While processing Attach Reject message, Valid exit condition is not met resulting into an infinite loop in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8976, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, SC8180X, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX55, SM6150, SM7150, SM8150, SM8250, Snapdragon_High_Med_2016, SXR1130, SXR2130
Published 2019-11-21 · Modified
7.5EPSS 0.006
CVE-2021-30312
Improper authentication of sub-frames of a multicast AMSDU frame can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-10-20 · Modified
7.5EPSS 0.006
CVE-2023-33042
Improper Input Validation in Modem
Published 2023-12-05 · Modified
7.5EPSS 0.006
CVE-2021-1970
Possible out of bound read due to lack of length check of FT sub-elements in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2021-07-13 · Modified
7.5EPSS 0.006
CVE-2021-30310
Possible buffer overflow due to Improper validation of received CF-ACK and CF-Poll data frames in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2021-10-20 · Modified
7.5EPSS 0.006
CVE-2021-1907
Possible buffer overflow due to lack of length check in BA request in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2021-07-13 · Modified
7.5EPSS 0.006
CVE-2021-1937
Reachable assertion is possible while processing peer association WLAN message from host and nonstandard incoming packet in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-06-09 · Modified
7.5EPSS 0.006
CVE-2021-1938
Possible assertion due to improper verification while creating and deleting the peer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-07-13 · Modified
7.5EPSS 0.006
CVE-2021-1943
Possible buffer out of bound read can occur due to improper validation of TBTT count and length while parsing the beacon response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Published 2021-07-13 · Modified
7.5EPSS 0.006
CVE-2021-1945
Possible out of bound read due to lack of length check of Bandwidth-NSS IE in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-07-13 · Modified
7.5EPSS 0.006
CVE-2021-1953
Improper handling of received malformed FTMR request frame can lead to reachable assertion while responding with FTM1 frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-07-13 · Modified
7.5EPSS 0.006
CVE-2021-1954
Possible buffer over read due to improper validation of data pointer while parsing FILS indication IE in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Published 2021-07-13 · Modified
7.5EPSS 0.006
CVE-2021-1955
Denial of service in SAP case due to improper handling of connections when association is rejected in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-07-13 · Modified
7.5EPSS 0.006
← Prev14 / 21Next →