Vulnerabilities > Qualcomm > Sm8650Q Firmware

DATE CVE VULNERABILITY TITLE RISK
2025-05-06 CVE-2024-49835 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while reading secure file.
local
low complexity
qualcomm CWE-787
7.8
2025-05-06 CVE-2024-49844 Improper Input Validation vulnerability in Qualcomm products
Memory corruption while triggering commands in the PlayReady Trusted application.
local
low complexity
qualcomm CWE-20
7.8
2025-05-06 CVE-2024-49845 Improper Input Validation vulnerability in Qualcomm products
Memory corruption during the FRS UDS generation process.
local
low complexity
qualcomm CWE-20
7.8
2025-05-06 CVE-2024-49847 Buffer Over-read vulnerability in Qualcomm products
Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key data IE.
network
low complexity
qualcomm CWE-126
7.5
2025-05-06 CVE-2025-21453 Use After Free vulnerability in Qualcomm products
Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures occur.
local
low complexity
qualcomm CWE-416
7.8
2025-05-06 CVE-2025-21459 Buffer Over-read vulnerability in Qualcomm products
Transient DOS while parsing per STA profile in ML IE.
network
low complexity
qualcomm CWE-126
7.5
2025-05-06 CVE-2025-21468 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to write null character at the end of buffer.
local
low complexity
qualcomm CWE-787
7.8
2025-03-03 CVE-2024-38426 Improper Authentication vulnerability in Qualcomm products
While processing the authentication message in UE, improper authentication may lead to information disclosure.
network
low complexity
qualcomm CWE-287
5.3
2025-03-03 CVE-2024-43051 Improper Authorization vulnerability in Qualcomm products
Information disclosure while deriving keys for a session for any Widevine use case.
local
low complexity
qualcomm CWE-285
5.5
2025-03-03 CVE-2024-43056 Buffer Over-read vulnerability in Qualcomm products
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
local
low complexity
qualcomm CWE-126
6.5