VendorsQualcommwcd9360_firmwareall versions
Vulnerabilities

Qualcomm WCD9360 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

237CVEs
CVE-2024-23385
Reachable Assertion in Modem
Published 2024-11-04 · Analyzed
7.5EPSS 0.003
CVE-2022-33253
Buffer over-read in WLAN
Published 2023-01-06 · Modified
7.5EPSS 0.002
CVE-2025-21477
Improper Input Validation in Modem
Published 2025-08-06 · Analyzed
7.5EPSS 0.002
CVE-2025-21452
Reachable Assertion in Modem
Published 2025-08-06 · Analyzed
7.5EPSS 0.002
CVE-2025-47318
Buffer Over-read in BT Controller
Published 2025-09-24 · Analyzed
7.5EPSS 0.002
CVE-2026-25275
Buffer Over-read in WLAN Firmware
Published 2026-09-17 · Analyzed
7.5EPSS 0.002
CVE-2021-35097
Possible authentication bypass due to improper order of signature verification and hashing in the signature verification call in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2022-09-02 · Modified
7.3EPSS 0.002
CVE-2025-47383
Missing Cryptographic Step in Data Modem
Published 2026-03-02 · Analyzed
7.2EPSS 0.001
CVE-2026-24085
Stack-based Buffer Overflow in Display
Published 2026-06-01 · Analyzed
7.2EPSS 0.001
CVE-2023-33070
Improper Authentication in Automotive OS
Published 2023-12-05 · Modified
7.1EPSS 0.001
CVE-2021-35085
Possible buffer overflow due to lack of buffer length check during management frame Rx handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2022-06-14 · Modified
7.1EPSS 0.001
CVE-2021-35084
Possible out of bound read due to lack of length check of data length for a DIAG event in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2022-06-14 · Modified
7.1EPSS 0.001
CVE-2023-21626
Improper Authentication in HLOS.
Published 2023-08-08 · Modified
7.1EPSS 0.001
CVE-2023-21629
Double Free in Modem
Published 2023-07-04 · Modified
6.8EPSS 0.002
CVE-2022-40519
Buffer over-read in Core
Published 2023-01-06 · Modified
6.8EPSS 0.001
CVE-2022-40518
Buffer overread in Core
Published 2023-01-06 · Modified
6.8EPSS 0.001
CVE-2021-35092
Processing DCB/AVB algorithm with an invalid queue index from IOCTL request could lead to arbitrary address modification in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2022-06-14 · Modified
6.7EPSS 0.002
CVE-2025-47333
Use After Free in HLOS
Published 2026-01-06 · Analyzed
6.6EPSS 0.001
CVE-2021-1956
Improper handling of ASB-U packet with L2CAP channel ID by slave host can lead to interference with piconet in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2021-09-09 · Modified
6.5EPSS 0.002
CVE-2021-1960
Improper handling of ASB-C broadcast packets with crafted opcode in LMP can lead to uncontrolled resource consumption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-09-09 · Modified
6.5EPSS 0.002
CVE-2021-30348
Improper validation of LLM utility timers availability can lead to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
Published 2022-01-03 · Modified
6.5EPSS 0.002
CVE-2026-24078
Exposure of Private Personal Information to an Unauthorized Actor in Data Modem
Published 2026-08-04 · Analyzed
6.5EPSS 0.002
CVE-2025-47370
Reachable Assertion in BT Controller
Published 2025-11-04 · Analyzed
6.5EPSS 0.001
CVE-2025-47384
Reachable Assertion in FW
Published 2026-03-02 · Analyzed
6.5EPSS 0.001
CVE-2025-47371
Reachable Assertion in Modem
Published 2026-03-02 · Analyzed
6.5EPSS 0.001
CVE-2020-11220
While processing storage SCM commands there is a time of check or time of use window where a pointer used could be invalid at a specific time while executing the storage SCM call in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Published 2021-03-17 · Modified
6.4EPSS 0.001
CVE-2020-11230
Potential arbitrary memory corruption when the qseecom driver updates ion physical addresses in the buffer as it exposes a physical address to user land in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2021-03-17 · Modified
6.4EPSS 0.001
CVE-2025-59610
Time-of-check Time-of-use (TOCTOU) Race Condition in Camera Driver
Published 2026-06-01 · Analyzed
6.4EPSS 0.001
CVE-2021-35135
A null pointer dereference may potentially occur during RSA key import in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2022-09-02 · Modified
6.2EPSS 0.001
CVE-2022-25725
Use-after-Free in MODEM
Published 2023-01-06 · Modified
6.2EPSS 0.001
CVE-2023-28566
Buffer Over-read in WLAN HAL
Published 2023-11-07 · Modified
6.1EPSS 0.001
CVE-2023-28569
Buffer Over-read in WLAN HAL
Published 2023-11-07 · Modified
6.1EPSS 0.001
CVE-2020-11186
Modem will enter into busy mode in an infinite loop while parsing histogram dimension due to improper validation of input received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile
Published 2021-03-17 · Modified
5.5EPSS 0.002
CVE-2021-35071
Possible buffer over read due to lack of size validation while copying data from DBR buffer to RX buffer and can lead to Denial of Service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-06-14 · Modified
5.5EPSS 0.001
CVE-2021-35119
Potential out of Bounds read in FIPS event processing due to improper validation of the length from the firmware in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
Published 2022-06-14 · Modified
5.5EPSS 0.001
CVE-2021-1903
Possible denial of service scenario can occur due to lack of length check on Channel Switch Announcement IE in beacon or probe response frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2021-11-12 · Modified
5.3EPSS 0.005
CVE-2022-22078
Denial of service in BOOT when partition size for a particular partition is requested due to integer overflow when blocks are calculated in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Published 2022-10-12 · Modified
4.6EPSS 0.002
← Prev6 / 6