Filtered by vendor Qualcomm Subscriptions
Filtered by product Sm8635 Subscriptions
Total 112 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-47317 1 Qualcomm 107 Fastconnect 6200, Fastconnect 6200 Firmware, Fastconnect 6700 and 104 more 2025-09-25 7.8 High
Memory corruption due to global buffer overflow when a test command uses an invalid payload type.
CVE-2024-53019 1 Qualcomm 162 Fastconnect 6200, Fastconnect 6200 Firmware, Fastconnect 6700 and 159 more 2025-08-20 8.2 High
Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing sources.
CVE-2025-27073 1 Qualcomm 341 Ar8035, Ar8035 Firmware, Csr8811 and 338 more 2025-08-20 7.5 High
Transient DOS while creating NDP instance.
CVE-2025-27065 1 Qualcomm 301 Ar8035, Ar8035 Firmware, Fastconnect 6800 and 298 more 2025-08-20 7.5 High
Transient DOS while processing a frame with malformed shared-key descriptor.
CVE-2025-21477 1 Qualcomm 179 315 5g Iot Modem, 315 5g Iot Modem Firmware, Ar8035 and 176 more 2025-08-20 7.5 High
Transient DOS while processing CCCH data when NW sends data with invalid length.
CVE-2024-45557 1 Qualcomm 122 Ar8035, Ar8035 Firmware, Fastconnect 6700 and 119 more 2025-08-19 7.8 High
Memory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation.
CVE-2025-21461 1 Qualcomm 49 Fastconnect 6900, Fastconnect 6900 Firmware, Fastconnect 7800 and 46 more 2025-08-19 7.8 High
Memory corruption when programming registers through virtual CDM.
CVE-2024-33052 1 Qualcomm 456 205 Mobile, 205 Mobile Firmware, 215 Mobile and 453 more 2025-08-11 7.8 High
Memory corruption when user provides data for FM HCI command control operations.
CVE-2025-21459 1 Qualcomm 248 Ar8035, Ar8035 Firmware, Fastconnect 6700 and 245 more 2025-08-11 7.5 High
Transient DOS while parsing per STA profile in ML IE.
CVE-2025-21468 1 Qualcomm 302 Ar8035, Ar8035 Firmware, Csra6620 and 299 more 2025-08-11 7.8 High
Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to write null character at the end of buffer.
CVE-2024-45558 1 Qualcomm 366 Ar8035, Ar8035 Firmware, Csr8811 and 363 more 2025-08-11 7.5 High
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
CVE-2025-21422 1 Qualcomm 443 Aqt1000, Aqt1000 Firmware, Ar8035 and 440 more 2025-08-11 7.1 High
Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.
CVE-2025-21432 1 Qualcomm 493 Aqt1000, Aqt1000 Firmware, Ar8035 and 490 more 2025-08-11 7.8 High
Memory corruption while retrieving the CBOR data from TA.
CVE-2024-33054 1 Qualcomm 70 Fastconnect 6700, Fastconnect 6700 Firmware, Fastconnect 6900 and 67 more 2025-08-11 7.8 High
Memory corruption during the handshake between the Primary Virtual Machine and Trusted Virtual Machine.
CVE-2024-49839 1 Qualcomm 372 Ar8035, Ar8035 Firmware, Csr8811 and 369 more 2025-08-11 8.2 High
Memory corruption during management frame processing due to mismatch in T2LM info element.
CVE-2025-21454 1 Qualcomm 385 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9206 Lte Modem and 382 more 2025-08-11 7.5 High
Transient DOS while processing received beacon frame.
CVE-2025-21433 1 Qualcomm 551 215 Mobile, 215 Mobile Firmware, Apq8017 and 548 more 2025-08-11 6.2 Medium
Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.
CVE-2025-21446 1 Qualcomm 481 Ar8035, Ar8035 Firmware, Ar9380 and 478 more 2025-08-11 7.5 High
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
CVE-2024-33038 1 Qualcomm 96 Fastconnect 6700, Fastconnect 6700 Firmware, Fastconnect 6900 and 93 more 2025-08-11 7.8 High
Memory corruption while passing untrusted/corrupted pointers from DSP to EVA.
CVE-2024-33048 1 Qualcomm 394 Ar8035, Ar8035 Firmware, Csr8811 and 391 more 2025-08-11 7.5 High
Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame.