threat
engine
.sh
Back
·
··:··
Home
/
Product
/
qualcomm c v2x 9150 firmware
Product
qualcomm c v2x 9150 firmware
116 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2025-47404
all versions
Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified.
6.5
MEDIUM
CVE-2026-21385
all versions
Memory corruption while using alignments for memory allocation.
7.8
HIGH
CVE-2025-47383
all versions
Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.
7.2
HIGH
CVE-2025-47379
all versions
Memory Corruption when concurrent access to shared buffer occurs due to improper synchronization between assignment and deallocati
7.8
HIGH
CVE-2025-47333
all versions
Memory corruption while handling buffer mapping operations in the cryptographic driver.
6.6
MEDIUM
CVE-2025-47330
all versions
Transient DOS while parsing video packets received from the video firmware.
5.5
MEDIUM
CVE-2025-47320
all versions
Memory corruption while processing MFC channel configuration during music playback.
7.8
HIGH
CVE-2025-27054
all versions
Memory corruption while processing a malformed license file during reboot.
7.8
HIGH
CVE-2025-27053
all versions
Memory corruption during PlayReady APP usecase while processing TA commands.
7.8
HIGH
CVE-2025-27030
all versions
information disclosure while invoking calibration data from user space to update firmware size.
6.1
MEDIUM
CVE-2025-21482
all versions
Cryptographic issue while performing RSA PKCS padding decoding.
7.1
HIGH
CVE-2025-21481
all versions
Memory corruption while performing private key encryption in trusted application.
7.8
HIGH
CVE-2025-27062
all versions
Memory corruption while handling client exceptions, allowing unauthorized channel access.
7.8
HIGH
CVE-2025-21465
all versions
Information disclosure while processing the hash segment in an MBN file.
6.5
MEDIUM
CVE-2025-21464
all versions
Information disclosure while reading data from an image using specified offset and size parameters.
6.5
MEDIUM
CVE-2025-21456
all versions
Memory corruption while processing IOCTL command when multiple threads are called to map/unmap buffer concurrently.
7.8
HIGH
CVE-2025-27061
all versions
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmwar
7.8
HIGH
CVE-2025-27042
all versions
Memory corruption while processing video packets received from video firmware.
7.8
HIGH
CVE-2024-53013
all versions
Memory corruption may occur while processing voice call registration with user.
6.6
MEDIUM
CVE-2024-45570
all versions
Memory corruption may occur during IO configuration processing when the IO port count is invalid.
6.6
MEDIUM
CVE-2024-45564
all versions
Memory corruption during concurrent access to server info object due to incorrect reference count update.
7.8
HIGH
CVE-2024-45562
all versions
Memory corruption during concurrent access to server info object due to unprotected critical field.
6.6
MEDIUM
CVE-2025-21429
all versions
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.
7.5
HIGH
CVE-2025-21428
all versions
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session
7.5
HIGH
CVE-2024-45544
all versions
Memory corruption while processing IOCTL calls to add route entry in the HW.
6.6
MEDIUM
CVE-2024-45543
all versions
Memory corruption while accessing MSM channel map and mixer functions.
6.6
MEDIUM
CVE-2024-45540
all versions
Memory corruption while invoking IOCTL map buffer request from userspace.
6.6
MEDIUM
CVE-2024-43067
all versions
Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shared memory.
7.8
HIGH
CVE-2025-21424
all versions
Memory corruption while calling the NPU driver APIs concurrently.
7.8
HIGH
CVE-2024-53014
all versions
Memory corruption may occur while validating ports and channels in Audio driver.
7.8
HIGH
CVE-2024-43057
all versions
Memory corruption while processing command in Glink linux.
7.8
HIGH
CVE-2024-43051
all versions
Information disclosure while deriving keys for a session for any Widevine use case.
5.5
MEDIUM
CVE-2024-38418
all versions
Memory corruption while parsing the memory map info in IOCTL calls.
7.8
HIGH
CVE-2024-38417
all versions
Information disclosure while processing IO control commands.
6.1
MEDIUM
CVE-2024-38416
all versions
Information disclosure during audio playback.
6.1
MEDIUM
CVE-2024-33067
all versions
Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound
6.1
MEDIUM
CVE-2024-33053
all versions
Memory corruption when multiple threads try to unregister the CVP buffer at the same time.
6.7
MEDIUM
CVE-2024-33037
all versions
Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message r
6.1
MEDIUM
CVE-2024-33036
all versions
Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and
6.7
MEDIUM
CVE-2024-38423
all versions
Memory corruption while processing GPU page table switch.
7.8
HIGH
CVE-2024-38422
all versions
Memory corruption while processing voice packet with arbitrary data received from ADSP.
7.8
HIGH
CVE-2024-33032
all versions
Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it.
6.7
MEDIUM
CVE-2024-38401
all versions
Memory corruption while processing concurrent IOCTL calls.
7.8
HIGH
CVE-2024-33060
all versions
Memory corruption when two threads try to map and unmap a single node simultaneously.
8.4
HIGH
CVE-2024-33016
all versions
memory corruption when an invalid firehose patch command is invoked.
6.8
MEDIUM
CVE-2024-33027
all versions
Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU
8.4
HIGH
CVE-2024-23356
all versions
Memory corruption during session sign renewal request calls in HLOS.
7.8
HIGH
CVE-2024-23353
all versions
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
7.5
HIGH
CVE-2024-23373
all versions
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
8.4
HIGH
CVE-2024-21462
all versions
Transient DOS while loading the TA ELF file.
7.1
HIGH
CVE-2024-21461
all versions
Memory corruption while performing finish HMAC operation when context is freed by keymaster.
8.4
HIGH
CVE-2023-43551
all versions
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immedia
9.1
CRITICAL
CVE-2024-21475
all versions
Memory corruption when the payload received from firmware is not as per the expected protocol size.
7.8
HIGH
CVE-2024-21471
all versions
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
8.4
HIGH
CVE-2023-43528
all versions
Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than
6.1
MEDIUM
CVE-2023-43521
all versions
Memory corruption when multiple listeners are being registered with the same file descriptor.
6.7
MEDIUM
CVE-2024-21468
all versions
Memory corruption when there is failed unmap operation in GPU.
8.4
HIGH
CVE-2024-21454
all versions
Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics.
7.5
HIGH
CVE-2024-21453
all versions
Transient DOS while decoding message of size that exceeds the available system memory.
7.5
HIGH
CVE-2024-21452
all versions
Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions.
7.3
HIGH
CVE-2023-33111
all versions
Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibra
5.5
MEDIUM
CVE-2023-33023
all versions
Memory corruption while processing finish_sign command to pass a rsp buffer.
8.4
HIGH
CVE-2023-28547
all versions
Memory corruption in SPS Application while requesting for public key in sorter TA.
8.4
HIGH
CVE-2023-33066
all versions
Memory corruption in Audio while processing RT proxy port register driver.
8.4
HIGH
CVE-2023-28578
all versions
Memory corruption in Core Services while executing the command for removing a single event listener.
9.3
CRITICAL
CVE-2023-43513
all versions
Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitr
7.8
HIGH
CVE-2023-33077
all versions
Memory corruption in HLOS while converting from authorization token to HIDL vector.
6.7
MEDIUM
CVE-2023-33069
all versions
Memory corruption in Audio while processing the calibration data returned from ACDB loader.
6.7
MEDIUM
CVE-2023-33068
all versions
Memory corruption in Audio while processing IIR config data from AFE calibration block.
6.7
MEDIUM
CVE-2023-33067
all versions
Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.
6.7
MEDIUM
CVE-2023-33065
all versions
Information disclosure in Audio while accessing AVCS services from ADSP payload.
6.1
MEDIUM
CVE-2023-33064
all versions
Transient DOS in Audio when invoking callback function of ASM driver.
5.5
MEDIUM
CVE-2023-33120
all versions
Memory corruption in Audio when memory map command is executed consecutively in ADSP.
7.8
HIGH
CVE-2023-33114
all versions
Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the
8.4
HIGH
CVE-2023-33033
all versions
Memory corruption in Audio during playback with speaker protection.
8.4
HIGH
CVE-2023-33032
all versions
Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.
9.3
CRITICAL
CVE-2023-33030
all versions
Memory corruption in HLOS while running playready use-case.
9.3
CRITICAL
CVE-2023-33107
all versions
Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.
8.4
HIGH
CVE-2023-33070
all versions
Transient DOS in Automotive OS due to improper authentication to the secure IO calls.
7.1
HIGH
CVE-2023-33063
all versions
Memory corruption in DSP Services during a remote call from HLOS to DSP.
7.8
HIGH
CVE-2023-33018
all versions
Memory corruption while using the UIM diag command to get the operators name.
7.8
HIGH
CVE-2023-33017
all versions
Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
7.8
HIGH
CVE-2023-28586
all versions
Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
6.0
MEDIUM
CVE-2023-28585
all versions
Memory corruption while loading an ELF segment in TEE Kernel.
8.2
HIGH
CVE-2023-28551
all versions
Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.
7.8
HIGH
CVE-2023-28550
all versions
Memory corruption in MPP performance while accessing DSM watermark using external memory address.
7.8
HIGH
CVE-2023-28546
all versions
Memory Corruption in SPS Application while exporting public key in sorter TA.
7.8
HIGH
CVE-2023-22383
all versions
Memory Corruption in camera while installing a fd for a particular DMA buffer.
6.7
MEDIUM
CVE-2023-33059
all versions
Memory corruption in Audio while processing the VOC packet data from ADSP.
7.8
HIGH
CVE-2023-33031
all versions
Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.
7.8
HIGH
CVE-2023-28556
all versions
Cryptographic issue in HLOS during key management.
7.1
HIGH
CVE-2023-28554
all versions
Information Disclosure in Qualcomm IPC while reading values from shared memory in VM.
6.1
MEDIUM
CVE-2023-24852
all versions
Memory Corruption in Core due to secure memory access by user while loading modem image.
8.4
HIGH
CVE-2023-22388
all versions
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
9.8
CRITICAL
CVE-2023-24848
all versions
Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value.
8.2
HIGH
CVE-2023-24847
all versions
Transient DOS in Modem while allocating DSM items.
7.5
HIGH
CVE-2023-22385
all versions
Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
8.2
HIGH
CVE-2023-33020
all versions
Transient DOS in WLAN Host when an invalid channel (like channel out of range) is received in STA during CSA IE.
7.5
HIGH
CVE-2023-33019
all versions
Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel in CSA IE
7.5
HIGH
CVE-2023-28575
all versions
The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invali
6.7
MEDIUM
CVE-2023-28542
all versions
Memory Corruption in WLAN HOST while fetching TX status information.
7.8
HIGH
CVE-2023-28541
all versions
Memory Corruption in Data Modem while processing DMA buffer release event about CFR data.
7.8
HIGH
CVE-2023-22387
all versions
Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption.
7.8
HIGH
CVE-2023-21631
all versions
Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from netw
7.5
HIGH
CVE-2023-21629
all versions
Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.
6.8
MEDIUM
CVE-2023-21670
all versions
Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode.
7.8
HIGH
CVE-2022-40529
all versions
Memory corruption due to improper access control in kernel while processing a mapping request from root process.
7.1
HIGH
CVE-2022-40521
all versions
Transient DOS due to improper authorization in Modem
7.5
HIGH
CVE-2022-40507
all versions
Memory corruption due to double free in Core while mapping HLOS address to the list.
8.4
HIGH
CVE-2022-33264
all versions
Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.
7.9
HIGH
CVE-2022-22076
all versions
information disclosure due to cryptographic issue in Core during RPMB read request.
7.1
HIGH
CVE-2023-21665
all versions
Memory corruption in Graphics while importing a file.
8.4
HIGH
CVE-2022-40503
all versions
Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.
8.2
HIGH
CVE-2022-33302
all versions
Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command le
6.8
MEDIUM
CVE-2022-33289
all versions
Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.
6.8
MEDIUM
CVE-2022-33231
all versions
Memory corruption due to double free in core while initializing the encryption key.
9.3
CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin