Vulnerabilities in Qualcomm, Inc.

2,976 results
Vexday analysis

Com 2.934 CVEs catalogadas, a Qualcomm apresenta um volume expressivo de vulnerabilidades, reflexo da amplitude de seu portfólio de chipsets e firmware embarcado. A taxa de exploração ativa — 12 entradas no catálogo KEV da CISA, ou 0,41% do total — está em linha com a média geral do catálogo, indicando que o risco de exploração confirmada não foge do padrão da indústria, embora 94 falhas de severidade crítica representem uma superfície de ataque relevante para equipes de segurança que dependem de componentes Qualcomm em ambientes móveis, automotivos ou de IoT. A CVE mais perigosa atualmente em exploração ativa, CVE-2020-11261, apresenta EPSS de 0,0177, sugerindo probabilidade de exploração adicional relativamente baixa no curto prazo, mas sua presença no KEV exige atenção imediata em qualquer inventário de ativos afetados. O surgimento de 49 novas CVEs nos últimos 90 dias e a disponibilidade de PoCs públicas para 3 vulnerabilidades reforçam a necessidade de ciclos contínuos de atualização de firmware e monitoramento ativo de patches liberados pelo fabricante.

CVE-2018-11863—In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of check of input received EPSS 0.2%CVE-2019-2330—improper input validation in allocation request for secure allocations can lead to page fault. in Snapdragon Auto, Snapdragon Compute, SnapdEPSS 0.2%CVE-2018-11903—In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of length validation check EPSS 0.2%CVE-2018-11883—In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, in policy mgr unit test if mode EPSS 0.2%CVE-2018-11852—In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper check In the WMA API foEPSS 0.2%CVE-2018-11843—In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack fo check on return value inEPSS 0.2%CVE-2021-30266MEDIUMPossible use after free due to improper memory validation when initializing new interface via Interface add command in Snapdragon Auto, SnapEPSS 0.2%CVE-2022-22078MEDIUMDenial of service in BOOT when partition size for a particular partition is requested due to integer overflow when blocks are calculated in EPSS 0.2%CVE-2021-1969MEDIUMImproper validation of kernel buffer address while copying information back to user buffer can lead to kernel memory information exposure toEPSS 0.2%CVE-2020-11265—Information disclosure issue due to lack of validation of pointer arguments passed to TZ BSP in Snapdragon Wired Infrastructure and NetworkiEPSS 0.2%CVE-2018-5864—While processing a WMI_APFIND event in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD AndroiEPSS 0.2%CVE-2018-12005—An unprivileged user can issue a binder call and cause a system halt in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, SnapdrEPSS 0.2%CVE-2018-3568—In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security pEPSS 0.2%CVE-2019-2239—Sanity checks are missing in layout which can lead to SUI Corruption or can lead to Denial of Service in Snapdragon Auto, Snapdragon ComputeEPSS 0.2%CVE-2020-11286—An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories EPSS 0.2%CVE-2021-1968MEDIUMImproper validation of kernel buffer address while copying information back to user buffer can lead to kernel memory information exposure toEPSS 0.2%CVE-2019-14025—u'When a new session is created, Object is returned that contains TZ addresses and it get passed to HLOS as an handle to refer to a particulEPSS 0.2%CVE-2017-8246—In function msm_pcm_playback_close() in all Android releases from CAF using the Linux kernel, prtd is assigned substream->runtime->private_dEPSS 0.2%CVE-2017-18281—A bool variable in Video function, which gets typecasted to int before being read could result in an out of bound read access in all AndroidEPSS 0.2%CVE-2018-5907—Possible buffer overflow in msm_adsp_stream_callback_put due to lack of input validation of user-provided data that leads to integer overfloEPSS 0.2%