Vulnerabilities > Qualcomm > Qsm8350 Firmware

DATE CVE VULNERABILITY TITLE RISK
2025-05-06 CVE-2024-49835 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while reading secure file.
local
low complexity
qualcomm CWE-787
7.8
2025-05-06 CVE-2024-49841 Detection of Error Condition Without Action vulnerability in Qualcomm products
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
local
low complexity
qualcomm CWE-390
7.8
2025-05-06 CVE-2024-49842 Improper Access Control vulnerability in Qualcomm products
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
local
low complexity
qualcomm CWE-284
7.8
2025-05-06 CVE-2024-49844 Improper Input Validation vulnerability in Qualcomm products
Memory corruption while triggering commands in the PlayReady Trusted application.
local
low complexity
qualcomm CWE-20
7.8
2025-05-06 CVE-2024-49845 Improper Input Validation vulnerability in Qualcomm products
Memory corruption during the FRS UDS generation process.
local
low complexity
qualcomm CWE-20
7.8
2025-05-06 CVE-2025-21468 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to write null character at the end of buffer.
local
low complexity
qualcomm CWE-787
7.8
2025-03-03 CVE-2024-43051 Improper Authorization vulnerability in Qualcomm products
Information disclosure while deriving keys for a session for any Widevine use case.
local
low complexity
qualcomm CWE-285
5.5
2025-03-03 CVE-2024-43056 Buffer Over-read vulnerability in Qualcomm products
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
local
low complexity
qualcomm CWE-126
6.5
2025-03-03 CVE-2024-53024 NULL Pointer Dereference vulnerability in Qualcomm products
Memory corruption in display driver while detaching a device.
local
low complexity
qualcomm CWE-476
7.8
2025-03-03 CVE-2025-21424 Use After Free vulnerability in Qualcomm products
Memory corruption while calling the NPU driver APIs concurrently.
local
low complexity
qualcomm CWE-416
7.8