Vulnerabilidades en Qualcomm, Inc.

2976 resultados
Análisis Vexday

Com 2.934 CVEs catalogadas, a Qualcomm apresenta um volume expressivo de vulnerabilidades, reflexo da amplitude de seu portfólio de chipsets e firmware embarcado. A taxa de exploração ativa — 12 entradas no catálogo KEV da CISA, ou 0,41% do total — está em linha com a média geral do catálogo, indicando que o risco de exploração confirmada não foge do padrão da indústria, embora 94 falhas de severidade crítica representem uma superfície de ataque relevante para equipes de segurança que dependem de componentes Qualcomm em ambientes móveis, automotivos ou de IoT. A CVE mais perigosa atualmente em exploração ativa, CVE-2020-11261, apresenta EPSS de 0,0177, sugerindo probabilidade de exploração adicional relativamente baixa no curto prazo, mas sua presença no KEV exige atenção imediata em qualquer inventário de ativos afetados. O surgimento de 49 novas CVEs nos últimos 90 dias e a disponibilidade de PoCs públicas para 3 vulnerabilidades reforçam a necessidade de ciclos contínuos de atualização de firmware e monitoramento ativo de patches liberados pelo fabricante.

CVE-2017-18311—XPU Master privilege escalation is possible due to improper access control of unused configuration xPU ports where unused configuration portEPSS 0.2%CVE-2018-11999—Improper input validation in trustzone can lead to denial of service in snapdragon automobile, snapdragon mobile and snapdragon wear in versEPSS 0.2%CVE-2018-11950—Unapproved TrustZone applications can be loaded and executed in Snapdragon Mobile in version SD 845, SD 850EPSS 0.2%CVE-2018-11970—TZ App dynamic allocations not protected from XBL loader in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics ConnectivitEPSS 0.2%CVE-2018-5839—Improperly configured memory protection allows read/write access to modem image from HLOS kernel in Snapdragon Auto, Snapdragon Compute, SnaEPSS 0.2%CVE-2018-5913—A non-time constant function memcmp is used which creates a side channel that could leak information in Snapdragon Auto, Snapdragon Compute,EPSS 0.2%CVE-2019-2316—When computing the digest a local variable is used after going out of scope in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile, EPSS 0.2%CVE-2019-2346—Firmware is getting into loop of overwriting memory when scan command is given from host because of improper validation. in Snapdragon CompuEPSS 0.2%CVE-2020-11183—A process can potentially cause a buffer overflow in the display service allowing privilege escalation by executing code as that service in EPSS 0.2%CVE-2019-2250—Kernel can write to arbitrary memory address passed by user while freeing/stopping a thread in Snapdragon Compute, Snapdragon Consumer IOT, EPSS 0.2%CVE-2019-10618—Driver may access an invalid address while processing IO control due to lack of check of address validation in Snapdragon Connectivity in QCEPSS 0.2%CVE-2018-5835—If the seq_len is greater then CSR_MAX_RSC_LEN, a buffer overflow in __wlan_hdd_cfg80211_add_key() may occur when copying keyRSC in Android EPSS 0.2%CVE-2025-27065HIGHBuffer Over-read in WLAN FirmwareEPSS 0.2%CVE-2018-11855—If an end user makes use of SCP11 sample OCE code without modification it could lead to a buffer overflow when transmitting a CAPDU in SnapdEPSS 0.2%CVE-2025-47318HIGHBuffer Over-read in BT ControllerEPSS 0.2%CVE-2019-2261—Unauthorized access from GPU subsystem to HLOS or other non secure subsystem memory can lead to information disclosure in Snapdragon Auto, SEPSS 0.2%CVE-2020-11146—Out of bound write while copying data using IOCTL due to lack of check of array index received from user in Snapdragon Auto, Snapdragon CompEPSS 0.2%CVE-2018-11928—Lack of check on length parameter may cause buffer overflow while processing WMI commands in Snapdragon Auto, Snapdragon Compute, SnapdragonEPSS 0.2%CVE-2018-11824—A stack-based buffer overflow can occur in a firmware routine in Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, SDEPSS 0.2%CVE-2019-10621—Use after free issue when MAP and UNMAP calls at same time as data structure used my MAP may be freed by UNMAP function in Snapdragon Auto, EPSS 0.2%