Vulnerabilities > Qualcomm

DATE CVE VULNERABILITY TITLE RISK
2025-02-03 CVE-2024-38404 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.
network
low complexity
qualcomm CWE-125
7.5
2025-02-03 CVE-2024-38411 Use After Free vulnerability in Qualcomm products
Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls.
local
low complexity
qualcomm CWE-416
7.8
2025-02-03 CVE-2024-38412 Use After Free vulnerability in Qualcomm products
Memory corruption while invoking IOCTL calls from user-space to kernel-space to handle session errors.
local
low complexity
qualcomm CWE-416
7.8
2025-02-03 CVE-2024-38413 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while processing frame packets.
local
low complexity
qualcomm CWE-787
7.8
2025-02-03 CVE-2024-38414 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while processing information on firmware image during core initialization.
local
low complexity
qualcomm CWE-125
5.5
2025-02-03 CVE-2024-38416 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure during audio playback.
local
low complexity
qualcomm CWE-125
5.5
2025-02-03 CVE-2024-38417 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while processing IO control commands.
local
low complexity
qualcomm CWE-125
5.5
2025-02-03 CVE-2024-38418 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption while parsing the memory map info in IOCTL calls.
local
high complexity
qualcomm CWE-367
7.0
2025-02-03 CVE-2024-38420 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while configuring a Hypervisor based input virtual device.
local
low complexity
qualcomm CWE-787
7.8
2025-02-03 CVE-2024-45560 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer.
local
high complexity
qualcomm CWE-367
7.0