Vulnerabilities > Qualcomm > Snapdragon Auto 5G Modem RF GEN 2 Firmware

DATE CVE VULNERABILITY TITLE RISK
2025-05-06 CVE-2024-49847 Buffer Over-read vulnerability in Qualcomm products
Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key data IE.
network
low complexity
qualcomm CWE-126
7.5
2025-05-06 CVE-2025-21453 Use After Free vulnerability in Qualcomm products
Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures occur.
local
low complexity
qualcomm CWE-416
7.8
2025-05-06 CVE-2025-21459 Buffer Over-read vulnerability in Qualcomm products
Transient DOS while parsing per STA profile in ML IE.
network
low complexity
qualcomm CWE-126
7.5
2025-03-03 CVE-2024-43051 Improper Authorization vulnerability in Qualcomm products
Information disclosure while deriving keys for a session for any Widevine use case.
local
low complexity
qualcomm CWE-285
5.5
2025-03-03 CVE-2024-43056 Buffer Over-read vulnerability in Qualcomm products
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
local
low complexity
qualcomm CWE-126
6.5
2025-03-03 CVE-2024-43057 Use After Free vulnerability in Qualcomm products
Memory corruption while processing command in Glink linux.
local
low complexity
qualcomm CWE-416
7.8
2025-03-03 CVE-2024-53023 Use After Free vulnerability in Qualcomm products
Memory corruption may occur while accessing a variable during extended back to back tests.
local
low complexity
qualcomm CWE-416
7.8
2025-03-03 CVE-2024-53027 Classic Buffer Overflow vulnerability in Qualcomm products
Transient DOS may occur while processing the country IE.
network
low complexity
qualcomm CWE-120
7.5
2025-03-03 CVE-2025-21424 Use After Free vulnerability in Qualcomm products
Memory corruption while calling the NPU driver APIs concurrently.
local
low complexity
qualcomm CWE-416
7.8
2025-02-03 CVE-2024-38404 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.
network
low complexity
qualcomm CWE-125
7.5