Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Qcm4290
Total 478 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-53014 1 Qualcomm 502 215, 215 Firmware, 315 5g Iot Modem and 499 more 2026-06-17 N/A 7.8 HIGH
Memory corruption may occur while validating ports and channels in Audio driver.
CVE-2024-49835 1 Qualcomm 424 Aqt1000, Aqt1000 Firmware, Ar8035 and 421 more 2026-06-17 N/A 7.8 HIGH
Memory corruption while reading secure file.
CVE-2024-45551 1 Qualcomm 484 Aqt1000, Aqt1000 Firmware, Ar8035 and 481 more 2026-06-17 N/A 6.2 MEDIUM
Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verification failure, potentially leading to a user throttling bypass.
CVE-2024-43051 1 Qualcomm 488 Aqt1000, Aqt1000 Firmware, Ar8031 and 485 more 2026-06-17 N/A 5.5 MEDIUM
Information disclosure while deriving keys for a session for any Widevine use case.
CVE-2024-43046 1 Qualcomm 620 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 617 more 2026-06-17 N/A 5.5 MEDIUM
There may be information disclosure during memory re-allocation in TZ Secure OS.
CVE-2024-38426 1 Qualcomm 328 205, 205 Firmware, 215 and 325 more 2026-06-17 N/A 5.4 MEDIUM
While processing the authentication message in UE, improper authentication may lead to information disclosure.
CVE-2024-38423 1 Qualcomm 412 205 Mobile Platform, 205 Mobile Platform Firmware, 215 Mobile Platform and 409 more 2026-06-17 N/A 7.8 HIGH
Memory corruption while processing GPU page table switch.
CVE-2024-38422 1 Qualcomm 536 205 Mobile Platform, 205 Mobile Platform Firmware, 215 Mobile Platform and 533 more 2026-06-17 N/A 7.8 HIGH
Memory corruption while processing voice packet with arbitrary data received from ADSP.
CVE-2024-38415 1 Qualcomm 356 215 Mobile Platform, 215 Mobile Platform Firmware, Ar8035 and 353 more 2026-06-17 N/A 7.8 HIGH
Memory corruption while handling session errors from firmware.
CVE-2024-33060 1 Qualcomm 500 215 Mobile, 215 Mobile Firmware, 315 5g Iot and 497 more 2026-06-17 N/A 8.4 HIGH
Memory corruption when two threads try to map and unmap a single node simultaneously.
CVE-2024-33052 1 Qualcomm 406 205 Mobile, 205 Mobile Firmware, 215 Mobile and 403 more 2026-06-17 N/A 7.8 HIGH
Memory corruption when user provides data for FM HCI command control operations.
CVE-2024-33051 1 Qualcomm 578 315 5g Iot, 315 5g Iot Firmware, 9206 Lte and 575 more 2026-06-17 N/A 7.5 HIGH
Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
CVE-2024-33043 1 Qualcomm 406 205 Mobile Platform, 205 Mobile Platform Firmware, 215 Mobile Platform and 403 more 2026-06-17 N/A 5.5 MEDIUM
Transient DOS while handling PS event when Program Service name length offset value is set to 255.
CVE-2024-33042 1 Qualcomm 406 205, 205 Firmware, 215 and 403 more 2026-06-17 N/A 7.8 HIGH
Memory corruption when Alternative Frequency offset value is set to 255.
CVE-2024-33016 1 Qualcomm 666 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 663 more 2026-06-17 N/A 6.8 MEDIUM
memory corruption when an invalid firehose patch command is invoked.
CVE-2024-33014 1 Qualcomm 650 315 5g Iot Modem, 315 5g Iot Modem Firmware, 860 Mobile Platform and 647 more 2026-06-17 N/A 7.5 HIGH
Transient DOS while parsing ESP IE from beacon/probe response frame.
CVE-2024-23373 1 Qualcomm 444 205 Mobile Platform, 205 Mobile Platform Firmware, 215 Mobile Platform and 441 more 2026-06-17 N/A 8.4 HIGH
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
CVE-2024-23368 1 Qualcomm 686 Apq8064au, Apq8064au Firmware, Aqt1000 and 683 more 2026-06-17 N/A 7.8 HIGH
Memory corruption when allocating and accessing an entry in an SMEM partition.
CVE-2024-23362 1 Qualcomm 464 9205 Lte Modem, 9205 Lte Modem Firmware, Aqt1000 and 461 more 2026-06-17 N/A 7.1 HIGH
Cryptographic issue while parsing RSA keys in COBR format.
CVE-2024-23357 1 Qualcomm 484 215 Mobile Platform, 215 Mobile Platform Firmware, Apq8017 and 481 more 2026-06-17 N/A 6.2 MEDIUM
Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.