Home/Product/qualcomm apq8064au firmware
Product

qualcomm apq8064au firmware

133 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-27074
all versions
Memory corruption while processing a GP command response.
8.8HIGH
CVE-2025-27053
all versions
Memory corruption during PlayReady APP usecase while processing TA commands.
7.8HIGH
CVE-2025-47318
all versions
Transient DOS while parsing the EPTM test control message to get the test pattern.
7.5HIGH
CVE-2025-21487
all versions
Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than th
8.2HIGH
CVE-2025-21484
all versions
Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP pa
8.2HIGH
CVE-2025-21483
all versions
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.
9.8CRITICAL
CVE-2025-21482
all versions
Cryptographic issue while performing RSA PKCS padding decoding.
7.1HIGH
CVE-2025-27062
all versions
Memory corruption while handling client exceptions, allowing unauthorized channel access.
7.8HIGH
CVE-2025-21454
all versions
Transient DOS while processing received beacon frame.
7.5HIGH
CVE-2025-21449
all versions
Transient DOS may occur while processing malformed length field in SSID IEs.
7.5HIGH
CVE-2025-21427
all versions
Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.
8.2HIGH
CVE-2024-53026
all versions
Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call.
8.2HIGH
CVE-2024-53020
all versions
Information disclosure may occur while decoding the RTP packet with invalid header extension from network.
8.2HIGH
CVE-2025-21430
all versions
Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.
7.5HIGH
CVE-2025-21429
all versions
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.
7.5HIGH
CVE-2024-45552
all versions
Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesn`t adhere to
8.2HIGH
CVE-2024-38423
all versions
Memory corruption while processing GPU page table switch.
7.8HIGH
CVE-2024-38422
all versions
Memory corruption while processing voice packet with arbitrary data received from ADSP.
7.8HIGH
CVE-2024-33014
all versions
Transient DOS while parsing ESP IE from beacon/probe response frame.
7.5HIGH
CVE-2024-23368
all versions
Memory corruption when allocating and accessing an entry in an SMEM partition.
7.8HIGH
CVE-2024-21461
all versions
Memory corruption while performing finish HMAC operation when context is freed by keymaster.
8.4HIGH
CVE-2024-21468
all versions
Memory corruption when there is failed unmap operation in GPU.
8.4HIGH
CVE-2023-33023
all versions
Memory corruption while processing finish_sign command to pass a rsp buffer.
8.4HIGH
CVE-2023-28547
all versions
Memory corruption in SPS Application while requesting for public key in sorter TA.
8.4HIGH
CVE-2023-33066
all versions
Memory corruption in Audio while processing RT proxy port register driver.
8.4HIGH
CVE-2023-43511
all versions
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains IPPROTO_NONE as the n
7.5HIGH
CVE-2023-33120
all versions
Memory corruption in Audio when memory map command is executed consecutively in ADSP.
7.8HIGH
CVE-2023-33033
all versions
Memory corruption in Audio during playback with speaker protection.
8.4HIGH
CVE-2023-33030
all versions
Memory corruption in HLOS while running playready use-case.
9.3CRITICAL
CVE-2023-33107
all versions
Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.
8.4HIGH
CVE-2023-33080
all versions
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
7.5HIGH
CVE-2023-28588
all versions
Transient DOS in Bluetooth Host while rfc slot allocation.
7.5HIGH
CVE-2023-28546
all versions
Memory Corruption in SPS Application while exporting public key in sorter TA.
7.8HIGH
CVE-2023-33059
all versions
Memory corruption in Audio while processing the VOC packet data from ADSP.
7.8HIGH
CVE-2023-33031
all versions
Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.
7.8HIGH
CVE-2023-28571
all versions
Information disclosure in WLAN HOST while processing the WLAN scan descriptor list during roaming scan.
6.1MEDIUM
CVE-2023-22382
all versions
Weak configuration in Automotive while VM is processing a listener request from TEE.
7.4HIGH
CVE-2023-33021
all versions
Memory corruption in Graphics while processing user packets for command submission.
8.4HIGH
CVE-2023-28565
all versions
Memory corruption in WLAN HAL while handling command streams through WMI interfaces.
7.8HIGH
CVE-2023-21643
all versions
Memory corruption due to untrusted pointer dereference in automotive during system call.
9.1CRITICAL
CVE-2022-40510
all versions
Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.
9.8CRITICAL
CVE-2023-28542
all versions
Memory Corruption in WLAN HOST while fetching TX status information.
7.8HIGH
CVE-2023-21633
all versions
Memory Corruption in Linux while processing QcRilRequestImsRegisterMultiIdentityMessage request.
6.7MEDIUM
CVE-2023-21632
all versions
Memory corruption in Automotive GPU while querying a gsl memory node.
8.4HIGH
CVE-2023-21628
all versions
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.
8.4HIGH
CVE-2022-22076
all versions
information disclosure due to cryptographic issue in Core during RPMB read request.
7.1HIGH
CVE-2023-21665
all versions
Memory corruption in Graphics while importing a file.
8.4HIGH
CVE-2022-40532
all versions
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
8.4HIGH
CVE-2022-40503
all versions
Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.
8.2HIGH
CVE-2022-40537
all versions
Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response.
7.3HIGH
CVE-2022-40515
all versions
Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms.
7.3HIGH
CVE-2022-33245
all versions
Memory corruption in WLAN due to use after free
6.7MEDIUM
CVE-2022-22075
all versions
Information Disclosure in Graphics during GPU context switch.
6.2MEDIUM
CVE-2022-40512
all versions
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
7.5HIGH
CVE-2022-40520
all versions
Memory corruption due to stack-based buffer overflow in Core
8.4HIGH
CVE-2022-33286
all versions
Transient DOS due to buffer over-read in WLAN while processing 802.11 management frames.
7.5HIGH
CVE-2022-33285
all versions
Transient DOS due to buffer over-read in WLAN while parsing WLAN CSA action frames.
7.5HIGH
CVE-2022-33266
all versions
Memory corruption in Audio due to integer overflow to buffer overflow while music playback of clips like amr,evrc,qcelp with modif
5.9MEDIUM
CVE-2022-33219
all versions
Memory corruption in Automotive due to integer overflow to buffer overflow while registering a new listener with shared buffer.
9.3CRITICAL
CVE-2022-33218
all versions
Memory corruption in Automotive due to improper input validation.
8.2HIGH
CVE-2022-22079
all versions
Denial of service while processing fastboot flash command on mmc due to buffer over read
4.6MEDIUM
CVE-2022-33238
all versions
Transient DOS due to loop with unreachable exit condition in WLAN while processing an incoming FTM frames. in Snapdragon Auto, Sna
7.5HIGH
CVE-2022-25743
all versions
Memory corruption in graphics due to use-after-free while importing graphics buffer in Snapdragon Auto, Snapdragon Compute, Snapdr
8.4HIGH
CVE-2022-25724
all versions
Memory corruption in graphics due to buffer overflow while validating the user address in Snapdragon Auto, Snapdragon Compute, Sna
8.4HIGH
CVE-2022-33210
all versions
Memory corruption in automotive multimedia due to use of out-of-range pointer offset while parsing command request packet with a v
8.4HIGH
CVE-2022-25749
all versions
Transient Denial-of-Service in WLAN due to buffer over-read while parsing MDNS frames. in Snapdragon Auto, Snapdragon Compute, Sna
7.5HIGH
CVE-2022-25720
all versions
Memory corruption in WLAN due to out of bound array access during connect/roaming in Snapdragon Auto, Snapdragon Compute, Snapdrag
9.8CRITICAL
CVE-2022-25718
all versions
Cryptographic issue in WLAN due to improper check on return value while authentication handshake in Snapdragon Auto, Snapdragon Co
9.1CRITICAL
CVE-2022-25687
all versions
memory corruption in video due to buffer overflow while parsing asf clips in Snapdragon Auto, Snapdragon Compute, Snapdragon Conne
7.3HIGH
CVE-2021-35104
all versions
Possible buffer overflow due to improper parsing of headers while playing the FLAC audio clip in Snapdragon Auto, Snapdragon Compu
9.8CRITICAL
CVE-2021-35100
all versions
Possible buffer over read due to improper calculation of string length while parsing Id3 tag in Snapdragon Auto, Snapdragon Comput
7.5HIGH
CVE-2021-30330
all versions
Possible null pointer dereference due to improper validation of APE clip in Snapdragon Auto, Snapdragon Compute, Snapdragon Connec
7.5HIGH
CVE-2021-30319
all versions
Possible integer overflow due to improper validation of command length parameters while processing WMI command in Snapdragon Auto,
7.8HIGH
CVE-2021-30348
all versions
Improper validation of LLM utility timers availability can lead to denial of service in Snapdragon Auto, Snapdragon Compute, Snapd
6.5MEDIUM
CVE-2021-30303
all versions
Possible buffer overflow due to lack of buffer length check when segmented WMI command is received in Snapdragon Auto, Snapdragon
7.8HIGH
CVE-2021-30270
all versions
Possible null pointer dereference in thread profile trap handler due to lack of thread ID validation before dereferencing it in Sn
7.3HIGH
CVE-2021-1973
all versions
A FTM Diag command can allow an arbitrary write into modem OS space in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit
7.8HIGH
CVE-2021-1924
all versions
Information disclosure through timing and power side-channels during mod exponentiation for RSA-CRT in Snapdragon Auto, Snapdragon
9.0CRITICAL
CVE-2021-30292
all versions
Possible memory corruption due to lack of validation of client data used for memory allocation in Snapdragon Auto, Snapdragon Comp
8.4HIGH
CVE-2021-30291
all versions
Possible memory corruption due to lack of validation of client data used for memory allocation in Snapdragon Auto, Snapdragon Comp
8.4HIGH
CVE-2021-30258
all versions
Possible buffer overflow due to improper size calculation of payload received in VR service in Snapdragon Auto, Snapdragon Compute
8.4HIGH
CVE-2021-1985
all versions
Possible buffer over read due to lack of data length check in QVR Service configuration in Snapdragon Auto, Snapdragon Compute, Sn
8.4HIGH
CVE-2021-1984
all versions
Possible buffer overflow due to improper validation of index value while processing the plugin block in Snapdragon Auto, Snapdrago
8.4HIGH
CVE-2021-1983
all versions
Possible buffer overflow due to improper handling of negative data length while processing write request in VR service in Snapdrag
8.4HIGH
CVE-2021-1980
all versions
Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Sna
7.5HIGH
CVE-2021-1977
all versions
Possible buffer over read due to improper validation of frame length while processing AEAD decryption during ASSOC response in Sna
7.5HIGH
CVE-2021-1949
all versions
Possible integer overflow due to improper check of batch count value while sanitizer is enabled in Snapdragon Auto, Snapdragon Com
8.4HIGH
CVE-2021-1936
all versions
Null pointer dereference can occur due to lack of null check for user provided input in Snapdragon Auto, Snapdragon Compute, Snapd
7.5HIGH
CVE-2020-11303
all versions
Accepting AMSDU frames with mismatched destination and source address can lead to information disclosure in Snapdragon Auto, Snapd
8.6HIGH
CVE-2021-30260
all versions
Possible Integer overflow to buffer overflow issue can occur due to improper validation of input parameters when extscan hostlist
8.4HIGH
CVE-2021-1976
all versions
A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Com
9.8CRITICAL
CVE-2021-1948
all versions
Possible out of bound read due to lack of length check of data while parsing the beacon or probe response in Snapdragon Auto, Snap
7.5HIGH
CVE-2021-1941
all versions
Possible buffer over read issue due to improper length check on WPA IE string sent by peer in Snapdragon Auto, Snapdragon Compute,
7.5HIGH
CVE-2021-1935
all versions
Possible null pointer dereference due to lack of validation check for passed pointer during key import in Snapdragon Auto, Snapdra
7.1HIGH
CVE-2021-1909
all versions
Buffer overflow occurs in trusted applications due to lack of length check of parameters in Snapdragon Auto, Snapdragon Compute, S
7.3HIGH
CVE-2021-1972
all versions
Possible buffer overflow due to improper validation of device types during P2P search in Snapdragon Auto, Snapdragon Compute, Snap
9.8CRITICAL
CVE-2021-1904
all versions
Child process can leak information from parent process due to numeric pids are getting compared and these pid can be reused in Sna
6.2MEDIUM
CVE-2020-11301
all versions
Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapd
9.1CRITICAL
CVE-2020-11264
all versions
Improper authentication of Non-EAPOL/WAPI plaintext frames during four-way handshake can lead to arbitrary network packet injectio
9.1CRITICAL
CVE-2021-1955
all versions
Denial of service in SAP case due to improper handling of connections when association is rejected in Snapdragon Auto, Snapdragon
7.5HIGH
CVE-2021-1945
all versions
Possible out of bound read due to lack of length check of Bandwidth-NSS IE in Snapdragon Auto, Snapdragon Compute, Snapdragon Conn
7.5HIGH
CVE-2021-1890
all versions
Improper length check of public exponent in RSA import key function could cause memory corruption. in Snapdragon Auto, Snapdragon
8.4HIGH
CVE-2021-1889
all versions
Possible buffer overflow due to lack of length check in Trusted Application in Snapdragon Auto, Snapdragon Compute, Snapdragon Con
8.4HIGH
CVE-2021-1888
all versions
Memory corruption in key parsing and import function due to double freeing the same heap allocation in Snapdragon Auto, Snapdragon
8.4HIGH
CVE-2021-1886
all versions
Incorrect handling of pointers in trusted application key import mechanism could cause memory corruption in Snapdragon Auto, Snapd
8.4HIGH
CVE-2020-11307
all versions
Buffer overflow in modem due to improper array index check before copying into it in Snapdragon Auto, Snapdragon Compute, Snapdrag
9.8CRITICAL
CVE-2021-1900
all versions
Possible use after free in Display due to race condition while creating an external display in Snapdragon Auto, Snapdragon Compute
8.4HIGH
CVE-2020-11267
all versions
Stack out-of-bounds write occurs while setting up a cipher device if the provided IV length exceeds the max limit value in Snapdra
8.4HIGH
CVE-2020-11262
all versions
A race between command submission and destroying the context can cause an invalid context being added to the list leads to use aft
7.0HIGH
CVE-2020-11261
all versions
Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdra
7.8HIGH
CVE-2020-11239
all versions
Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleaned up proper
7.8HIGH
CVE-2020-11235
all versions
Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto, Snapdrag
7.8HIGH
CVE-2020-11161
all versions
Out-of-bounds memory access can occur while calculating alignment requirements for a negative width from external components in Sn
7.1HIGH
CVE-2020-11159
all versions
Buffer over-read can happen while processing WPA,RSN IE of beacon and response frames if IE length is less than length of frame po
9.1CRITICAL
CVE-2021-1910
all versions
Double free in video due to lack of input buffer length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Sna
7.3HIGH
CVE-2021-1906
all versions
Improper handling of address deregistration on failure can lead to new GPU address allocation failure. in Snapdragon Auto, Snapdra
6.2MEDIUM
CVE-2021-1905
all versions
Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapd
8.4HIGH
CVE-2020-11293
all versions
Out of bound read can happen in Widevine TA while copying data to buffer from user data due to lack of check of buffer length rece
5.1MEDIUM
CVE-2020-11289
all versions
Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute,
7.8HIGH
CVE-2020-11234
all versions
When sending a socket event message to a user application, invalid information will be passed if socket is freed by other thread r
8.4HIGH
CVE-2020-11309
all versions
Use after free in GPU driver while mapping the user memory to GPU memory due to improper check of referenced memory in Snapdragon
7.8HIGH
CVE-2020-11299
all versions
Buffer overflow can occur in video while playing the non-standard clip in Snapdragon Auto, Snapdragon Compute, Snapdragon Connecti
9.8CRITICAL
CVE-2020-11296
all versions
Arithmetic overflow can happen while processing NOA IE due to improper error handling in Snapdragon Auto, Snapdragon Compute, Snap
7.5HIGH
CVE-2020-11276
all versions
Possible buffer over read while processing P2P IE and NOA attribute of beacon and probe response frames due to improper validation
9.1CRITICAL
CVE-2020-11269
all versions
Possible memory corruption while processing EAPOL frames due to lack of validation of key length before using it in Snapdragon Aut
8.8HIGH
CVE-2020-11204
all versions
Possible memory corruption and information leakage in sub-system due to lack of check for validity and boundary compliance for par
7.8HIGH
CVE-2020-11203
all versions
Stack overflow may occur if GSM/WCDMA broadcast config size received from user is larger than variable length array in Snapdragon
7.1HIGH
CVE-2020-11195
all versions
Out of bound write and read in TA while processing command from NS side due to improper length check on command and response buffe
7.8HIGH
CVE-2020-11170
all versions
Out of bound memory access while playing music playbacks with crafted vorbis content due to improper checks in header extraction i
9.8CRITICAL
CVE-2020-11196
all versions
u'Integer overflow to buffer overflow occurs while playback of ASF clip having unexpected number of codec entries' in Snapdragon A
9.8CRITICAL
CVE-2020-11193
all versions
u'Buffer over read can happen while parsing mkv clip due to improper typecasting of data returned from atomsize' in Snapdragon Aut
9.8CRITICAL
CVE-2020-11168
all versions
u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range'
9.8CRITICAL
CVE-2020-11123
all versions
u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attempts at get
5.5MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin