Home/Product/qualcomm mdm9655 firmware
Product

qualcomm mdm9655 firmware

242 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2022-33213
all versions
Memory corruption in modem due to buffer overflow while processing a PPP packet
7.5HIGH
CVE-2022-25705
all versions
Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response
7.8HIGH
CVE-2022-25682
all versions
Memory corruption in MODEM UIM due to usage of out of range pointer offset while decoding command from card in Snapdragon Auto, Sn
8.4HIGH
CVE-2021-30344
all versions
Improper authorization of a replayed LTE security mode command can lead to a denial of service in Snapdragon Auto, Snapdragon Comp
7.5HIGH
CVE-2021-30342
all versions
Improper integrity check can lead to race condition between tasks PDCP and RRC? after a valid RRC Command packet has been received
9.1CRITICAL
CVE-2021-30323
all versions
Improper validation of maximum size of data write to EFS file can lead to memory corruption in Snapdragon Auto, Snapdragon Compute
7.8HIGH
CVE-2021-30322
all versions
Possible out of bounds write due to improper validation of number of GPIOs configured in an internal parameters array in Snapdrago
7.8HIGH
CVE-2021-30271
all versions
Possible null pointer dereference in trap handler due to lack of thread ID validation before dereferencing it in Snapdragon Auto,
7.3HIGH
CVE-2021-30259
all versions
Possible out of bound access due to improper validation of function table entries in Snapdragon Auto, Snapdragon Compute, Snapdrag
7.8HIGH
CVE-2021-1924
all versions
Information disclosure through timing and power side-channels during mod exponentiation for RSA-CRT in Snapdragon Auto, Snapdragon
9.0CRITICAL
CVE-2021-30310
all versions
Possible buffer overflow due to Improper validation of received CF-ACK and CF-Poll data frames in Snapdragon Auto, Snapdragon Conn
7.5HIGH
CVE-2020-11303
all versions
Accepting AMSDU frames with mismatched destination and source address can lead to information disclosure in Snapdragon Auto, Snapd
8.6HIGH
CVE-2021-30261
all versions
Possible integer and heap overflow due to lack of input command size validation while handling beacon template update command from
8.4HIGH
CVE-2021-1935
all versions
Possible null pointer dereference due to lack of validation check for passed pointer during key import in Snapdragon Auto, Snapdra
7.1HIGH
CVE-2021-1909
all versions
Buffer overflow occurs in trusted applications due to lack of length check of parameters in Snapdragon Auto, Snapdragon Compute, S
7.3HIGH
CVE-2021-1920
all versions
Integer underflow can occur due to improper handling of incoming RTCP packets in Snapdragon Auto, Snapdragon Compute, Snapdragon C
9.8CRITICAL
CVE-2021-1919
all versions
Integer underflow can occur when the RTCP length is lesser than the actual blocks present in Snapdragon Auto, Snapdragon Comp
9.8CRITICAL
CVE-2021-1916
all versions
Possible buffer underflow due to lack of check for negative indices values when processing user provided input in Snapdragon Auto,
9.8CRITICAL
CVE-2020-11301
all versions
Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapd
9.1CRITICAL
CVE-2021-1890
all versions
Improper length check of public exponent in RSA import key function could cause memory corruption. in Snapdragon Auto, Snapdragon
8.4HIGH
CVE-2021-1889
all versions
Possible buffer overflow due to lack of length check in Trusted Application in Snapdragon Auto, Snapdragon Compute, Snapdragon Con
8.4HIGH
CVE-2021-1888
all versions
Memory corruption in key parsing and import function due to double freeing the same heap allocation in Snapdragon Auto, Snapdragon
8.4HIGH
CVE-2021-1886
all versions
Incorrect handling of pointers in trusted application key import mechanism could cause memory corruption in Snapdragon Auto, Snapd
8.4HIGH
CVE-2020-11292
all versions
Possible buffer overflow in voice service due to lack of input validation of parameters in QMI Voice API in Snapdragon Auto, Snapd
7.8HIGH
CVE-2020-11241
all versions
Out of bound read will happen if EAPOL Key length is less than expected while processing NAN shared key descriptor attribute in Sn
7.5HIGH
CVE-2020-11239
all versions
Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleaned up proper
7.8HIGH
CVE-2020-11235
all versions
Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto, Snapdrag
7.8HIGH
CVE-2020-11233
all versions
Time-of-check time-of-use race condition While processing partition entries due to newly created buffer was read again from mmc wi
7.0HIGH
CVE-2020-11159
all versions
Buffer over-read can happen while processing WPA,RSN IE of beacon and response frames if IE length is less than length of frame po
9.1CRITICAL
CVE-2020-11293
all versions
Out of bound read can happen in Widevine TA while copying data to buffer from user data due to lack of check of buffer length rece
5.1MEDIUM
CVE-2020-11289
all versions
Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute,
7.8HIGH
CVE-2020-11285
all versions
Buffer over-read while unpacking the RTCP packet we may read extra byte if wrong length is provided in RTCP packets in Snapdragon
8.2HIGH
CVE-2020-11279
all versions
Memory corruption while processing crafted SDES packets due to improper length check in sdes packets recieved in Snapdragon Auto,
7.5HIGH
CVE-2020-11255
all versions
Denial of service while processing RTCP packets containing multiple SDES reports due to memory for last SDES packet is freed and r
7.5HIGH
CVE-2020-11251
all versions
Out-of-bounds read vulnerability while accessing DTMF payload due to lack of check of buffer length before copying in Snapdragon A
8.2HIGH
CVE-2020-11234
all versions
When sending a socket event message to a user application, invalid information will be passed if socket is freed by other thread r
8.4HIGH
CVE-2020-11191
all versions
Out of bound read occurs while processing crafted SDP due to lack of check of null string in Snapdragon Auto, Snapdragon Compute,
8.2HIGH
CVE-2020-11308
all versions
Buffer overflow occurs when trying to convert ASCII string to Unicode string if the actual size is more than required in Snapdrago
6.8MEDIUM
CVE-2020-11227
all versions
Out of bound write while parsing RTT/TTY packet parsing due to lack of check of buffer size before copying into buffer in Snapdrag
9.8CRITICAL
CVE-2020-11226
all versions
Out of bound memory read in Data modem while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Comp
7.5HIGH
CVE-2020-11221
all versions
Usage of syscall by non-secure entity can allow extraction of secure QTEE diagnostic information in clear text form due to insuffi
5.5MEDIUM
CVE-2020-11199
all versions
HLOS to access EL3 stack canary by just mapping imem region due to Improper access control and can lead to information exposure in
5.5MEDIUM
CVE-2020-11192
all versions
Out of bound write while parsing SDP string due to missing check on null termination in Snapdragon Auto, Snapdragon Compute, Snapd
9.8CRITICAL
CVE-2020-11190
all versions
Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Sna
9.1CRITICAL
CVE-2020-11189
all versions
Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Sna
9.1CRITICAL
CVE-2020-11188
all versions
Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Sna
9.1CRITICAL
CVE-2020-11171
all versions
Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Sna
9.1CRITICAL
CVE-2020-11166
all versions
Potential out of bound read exception when UE receives unusually large number of padding octets in the beginning of ROHC header in
9.1CRITICAL
CVE-2020-11296
all versions
Arithmetic overflow can happen while processing NOA IE due to improper error handling in Snapdragon Auto, Snapdragon Compute, Snap
7.5HIGH
CVE-2020-11276
all versions
Possible buffer over read while processing P2P IE and NOA attribute of beacon and probe response frames due to improper validation
9.1CRITICAL
CVE-2020-11275
all versions
Possible buffer over-read while parsing quiet IE in Rx beacon frame due to improper check of IE length in received beacon in Snapd
9.1CRITICAL
CVE-2020-11272
all versions
Before enqueuing a frame to the PE queue for further processing, an entry in a hash table can be deleted and using a stale version
9.8CRITICAL
CVE-2020-11269
all versions
Possible memory corruption while processing EAPOL frames due to lack of validation of key length before using it in Snapdragon Aut
8.8HIGH
CVE-2020-11204
all versions
Possible memory corruption and information leakage in sub-system due to lack of check for validity and boundary compliance for par
7.8HIGH
CVE-2020-11195
all versions
Out of bound write and read in TA while processing command from NS side due to improper length check on command and response buffe
7.8HIGH
CVE-2020-11177
all versions
User can overwrite Security Code NV item without knowing current SPC due to improper validation of SPC code setting and device loc
8.8HIGH
CVE-2020-11170
all versions
Out of bound memory access while playing music playbacks with crafted vorbis content due to improper checks in header extraction i
9.8CRITICAL
CVE-2020-11119
all versions
Buffer over-read can happen when the buffer length received from response handlers is more than the size of the payload in Snapdra
7.5HIGH
CVE-2020-11207
all versions
Buffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snapdragon Com
7.8HIGH
CVE-2020-11123
all versions
u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attempts at get
5.5MEDIUM
CVE-2020-3670
all versions
u'Potential out of bounds read while processing downlink NAS transport message due to improper length check of Information Element
9.1CRITICAL
CVE-2020-3634
all versions
u'Multiple Read overflows issue due to improper length check while decoding Generic NAS transport/EMM info' in Snapdragon Auto, Sn
9.1CRITICAL
CVE-2020-3624
all versions
u'A potential buffer overflow exists due to integer overflow when parsing handler options due to wrong data type usage in operatio
7.8HIGH
CVE-2020-3622
all versions
u'Channel name string which has been read from shared memory is potentially subjected to string manipulations but not validated fo
7.8HIGH
CVE-2020-3621
all versions
u'Lack of check to ensure that the TX read index & RX write index that are read from shared memory are less than the FIFO size res
5.5MEDIUM
CVE-2020-3620
all versions
u'Lack of check of integer overflow while doing a round up operation for data read from shared memory for G-link SMEM transport ca
5.5MEDIUM
CVE-2019-14074
all versions
u'Heap overflow in diag command handler due to lack of check of packet length received from user' in Snapdragon Auto, Snapdragon C
7.8HIGH
CVE-2019-14052
all versions
u'Accessing an uninitialized data structure could result in partially copying of contents and thus incorrect processing' in Snapdr
9.8CRITICAL
CVE-2019-13999
all versions
u'Lack of check for integer overflow for round up and addition operations result into memory corruption and potential information
7.8HIGH
CVE-2019-13998
all versions
u'Lack of check that the TX FIFO write and read indices that are read from shared RAM are less than the FIFO size results into mem
7.8HIGH
CVE-2019-13995
all versions
u'Lack of integer overflow check for addition of fragment size and remaining size that are read from shared memory can lead to mem
7.8HIGH
CVE-2019-13994
all versions
u'Lack of check that the current received data fragment size of a particular packet that are read from shared memory are less than
7.8HIGH
CVE-2019-14101
all versions
Out of bounds read can happen in diag event set mask command handler when user provided length in the command request is less than
7.1HIGH
CVE-2019-14094
all versions
Integer overflow in diag command handler when user inputs a large value for number of tasks field in the request packet in Snapdra
7.8HIGH
CVE-2019-14073
all versions
Copying RTCP messages into the output buffer without checking the destination buffer size which could lead to a remote stack overf
9.8CRITICAL
CVE-2019-14062
all versions
Buffer overflows while decoding setup message from Network due to lack of check of IE message length received from network in Snap
9.8CRITICAL
CVE-2019-14033
all versions
Multiple Read overflows issue due to improper length check while decoding tau reject/tau accept/detach request/attach reject/attac
9.1CRITICAL
CVE-2019-14020
all versions
Multiple Read overflows issue due to improper length check while decoding dedicated_eps_bearer_req/ act_def_context_req/ cs_serv_n
9.1CRITICAL
CVE-2019-14019
all versions
Multiple Read overflows issue due to improper length check while decoding RAU accept/PDN disconnect Rej/Modify EPS ctxt req/bearer
9.1CRITICAL
CVE-2019-14018
all versions
Possible out of bound array access as there is no check on carrier index passed in Snapdragon Auto, Snapdragon Compute, Snapdragon
7.8HIGH
CVE-2019-14011
all versions
Multiple Read overflows issue due to improper length check while decoding 3G attach accept/ SMS/ pdn connection reject/ esm data t
9.1CRITICAL
CVE-2019-10610
all versions
Possible buffer over read when trying to process SDP message Video media line with frame-size attribute in video Media line in Sna
9.1CRITICAL
CVE-2019-10609
all versions
Out of bound write can happen due to lack of check of array index value while calculating it. in Snapdragon Auto, Snapdragon Compu
9.8CRITICAL
CVE-2019-10588
all versions
Copying RTCP messages into the output buffer without checking the destination buffer size which could lead to a remote stack overf
9.8CRITICAL
CVE-2019-10574
all versions
Lack of boundary checks for data offsets received from HLOS can lead to out-of-bound read in Snapdragon Auto, Snapdragon Compute,
7.1HIGH
CVE-2019-10551
all versions
String error while processing non standard SIP messages received can lead to buffer overread and then denial of service in Snapdra
9.1CRITICAL
CVE-2019-10483
all versions
Side channel issue in QTEE due to usage of non-time-constant comparison function such as memcmp or strcmp in Snapdragon Auto, Snap
5.5MEDIUM
CVE-2019-14000
all versions
Lack of check that the RX FIFO write index that is read from shared RAM is less than the FIFO size results into memory corruption
7.8HIGH
CVE-2019-10594
all versions
Stack overflow can occur when SDP is received with multiple payload types in the FMTP attribute of a video M line in Snapdragon Au
9.8CRITICAL
CVE-2019-10593
all versions
Buffer overflow can occur when processing non standard SDP video Image attribute parameter in a VILTE\VOLTE call in Snapdragon Aut
9.8CRITICAL
CVE-2019-10587
all versions
Possible Stack overflow can occur when processing a large SDP body or non standard SDP body without right delimiters in Snapdragon
9.8CRITICAL
CVE-2019-10586
all versions
Filling media attribute tag names without validating the destination buffer size which can result in the buffer overflow in Snapdr
9.8CRITICAL
CVE-2019-10577
all versions
Improper input validation while processing SIP URI received from the network will lead to buffer over-read and then to denial of s
9.1CRITICAL
CVE-2019-10554
all versions
Multiple Read overflows issue due to improper length check while decoding Identity Request in CSdomain/Authentication Reject in CS
9.1CRITICAL
CVE-2019-10553
all versions
Multiple Read overflows due to improper length checks while decoding authentication in Cs domain/RAU Reject and TC cmd in Snapdrag
9.1CRITICAL
CVE-2019-10552
all versions
Multiple Buffer Over-read issue can happen due to improper length checks while decoding Service Reject/RAU Reject/PTMSI Realloc cm
9.1CRITICAL
CVE-2019-2274
all versions
Improper Access Control for RPU write access from secure processor in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Ele
7.8HIGH
CVE-2019-2242
all versions
Device memory may get corrupted because of buffer overflow/underflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer
9.8CRITICAL
CVE-2019-10525
all versions
Buffer overflow during SIB read when network configures complete sib list along with first and last segment of other SIB in Snapdr
9.8CRITICAL
CVE-2019-10516
all versions
Multiple read overflows in MM while decoding service accept,service reject,attach reject and MT detach in Snapdragon Auto, Snapdra
9.8CRITICAL
CVE-2019-10500
all versions
While processing MT Secondary PDP request, Buffer overflow will happen due to incorrect calculation of buffer size in Snapdragon A
9.8CRITICAL
CVE-2019-10487
all versions
Buffer over read can happen while parsing SMS OTA messages at transport layer if network sends un-intended values in Snapdragon Au
9.8CRITICAL
CVE-2019-2337
all versions
While Skipping unknown IES, EMM is reading the buffer even if the no of bytes to read are more than message length which may cause
7.5HIGH
CVE-2019-2320
all versions
Possible out of bounds write in a MT SMS/SS scenario due to improper validation of array index in Snapdragon Auto, Snapdragon Comp
9.8CRITICAL
CVE-2019-10511
all versions
Possibility of memory overflow while decoding GSNDCP compressed mode PDU in Snapdragon Auto, Snapdragon Compute, Snapdragon Consum
9.8CRITICAL
CVE-2019-10493
all versions
Position determination accuracy may be degraded due to wrongly decoded information in Snapdragon Auto, Snapdragon Compute, Snapdra
9.8CRITICAL
CVE-2019-10485
all versions
Infinite loop while decoding compressed data can lead to overrun condition in Snapdragon Auto, Snapdragon Compute, Snapdragon Cons
7.5HIGH
CVE-2019-2335
all versions
While processing Attach Reject message, Valid exit condition is not met resulting into an infinite loop in Snapdragon Auto, Snapdr
7.5HIGH
CVE-2019-2303
all versions
SNDCP module may access array out side its boundary when it receives malformed XID message. in Snapdragon Auto, Snapdragon Compute
9.8CRITICAL
CVE-2019-2289
all versions
Lack of integrity check allows MODEM to accept any NAS messages which can result into authentication bypass of NAS in Snapdragon A
9.8CRITICAL
CVE-2019-2271
all versions
Buffer over read can happen while parsing downlink session management OTA messages if network sends un-intended values in Snapdrag
9.8CRITICAL
CVE-2018-13916
all versions
Out-of-bounds memory access in Qurt kernel function when using the identifier to access Qurt kernel buffer to retrieve thread data
7.8HIGH
CVE-2019-2258
all versions
Improper validation of array index causes OOB write and then leads to memory corruption in MMCP in Snapdragon Auto, Snapdragon Com
9.8CRITICAL
CVE-2019-2294
all versions
Usage of hard-coded magic number for calculating heap guard bytes can allow users to corrupt heap blocks without heap algorithm kn
9.8CRITICAL
CVE-2019-2254
all versions
Position determination accuracy may be degraded due to wrongly decoded information in Snapdragon Auto, Snapdragon Compute, Snapdra
9.8CRITICAL
CVE-2019-2241
all versions
While rendering the layout background, Error status check is not caught properly and also incorrect status handling is being done
5.5MEDIUM
CVE-2019-2239
all versions
Sanity checks are missing in layout which can lead to SUI Corruption or can lead to Denial of Service in Snapdragon Auto, Snapdrag
5.5MEDIUM
CVE-2019-2238
all versions
Lack of check of data type can lead to subsequent loop-expression potentially go negative and the condition will still evaluate to
7.8HIGH
CVE-2019-2237
all versions
Failure in taking appropriate action to handle the error case If keypad gpio deactivation fails leads to silent failure scenario a
5.5MEDIUM
CVE-2019-2236
all versions
Null pointer dereference during secure application termination using specific application ids. in Snapdragon Auto, Snapdragon Comp
5.5MEDIUM
CVE-2019-2235
all versions
Buffer overflow occurs when emulated RPMB is used due to sector size assumptions in the TA rollback protection logic. in Snapdrago
7.8HIGH
CVE-2018-13927
all versions
Debug policy with invalid signature can be loaded when the debug policy functionality is disabled by using the parallel image load
7.8HIGH
CVE-2018-13924
all versions
Lack of check to prevent the buffer length taking negative values can lead to stack overflow. in Snapdragon Auto, Snapdragon Compu
9.8CRITICAL
CVE-2018-13896
all versions
XBL_SEC image authentication and other crypto related validations are accessible to a compromised OEM XBL Loader due to missing lo
7.8HIGH
CVE-2018-5913
all versions
A non-time constant function memcmp is used which creates a side channel that could leak information in Snapdragon Auto, Snapdrago
7.8HIGH
CVE-2018-13911
all versions
Out of bounds memory read and access may lead to unexpected behavior in GNSS XTRA Parser in Snapdragon Auto, Snapdragon Compute, S
9.8CRITICAL
CVE-2018-13910
all versions
Out-of-Bounds access in TZ due to invalid index calculated to check against DDR in Snapdragon Auto, Snapdragon Connectivity, Snapd
7.8HIGH
CVE-2018-13909
all versions
Metadata verification and partial hash system calls by bootloader may corrupt parallel hashing state in progress resulting in unex
7.0HIGH
CVE-2018-13908
all versions
Truncated access authentication token leads to weakened access control for stored secure application data in Snapdragon Auto, Snap
7.8HIGH
CVE-2018-13907
all versions
While deserializing any key blob during key operations, buffer overflow could occur, exposing partial key information if any key o
5.3MEDIUM
CVE-2018-13906
all versions
The HMAC authenticating the message from QSEE is vulnerable to timing side channel analysis leading to potentially forged applicat
9.1CRITICAL
CVE-2018-13902
all versions
Out of bounds memory read and access due to improper array index validation may lead to unexpected behavior while decoding XTRA fi
7.5HIGH
CVE-2018-13898
all versions
Out-of-Bounds write due to incorrect array index check in PMIC in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electro
9.8CRITICAL
CVE-2017-8252
all versions
Kernel can inject faults in computations during the execution of TrustZone leading to information disclosure in Snapdragon Auto, S
5.5MEDIUM
CVE-2018-13887
all versions
Untrusted header fields in GNSS XTRA3 function can lead to integer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Con
9.8CRITICAL
CVE-2018-13886
all versions
Unchecked OTA field in GNSS XTRA3 lead to integer overflow and then buffer overflow in Snapdragon Auto, Snapdragon Compute, Snapdr
9.8CRITICAL
CVE-2018-13885
all versions
Possible memory overread may be lead to access of sensitive data in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT,
5.5MEDIUM
CVE-2018-12013
all versions
Improper authentication in locked memory region can lead to unprivilged access to the memory in Snapdragon Auto, Snapdragon Comput
7.8HIGH
CVE-2018-12012
all versions
While updating blacklisting region shared buffered memory region is not validated against newly updated black list, causing boot-u
7.8HIGH
CVE-2018-12004
all versions
Secure keypad is unlocked with secure display still intact in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics
5.5MEDIUM
CVE-2018-11976
all versions
ECDSA signature code leaks private keys from secure world to non-secure world in Snapdragon Auto, Snapdragon Compute, Snapdragon C
5.5MEDIUM
CVE-2018-11971
all versions
Interrupt exit code flow may undermine access control policy set forth by secure world can lead to potential secure asset leakage
5.5MEDIUM
CVE-2018-11970
all versions
TZ App dynamic allocations not protected from XBL loader in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics C
7.8HIGH
CVE-2018-11966
all versions
Undefined behavior in UE while processing unknown IEI in OTA message in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer I
7.8HIGH
CVE-2018-11958
all versions
Insufficient protection of keys in keypad can lead HLOS to gain access to confidential keypad input data in Snapdragon Auto, Snapd
5.5MEDIUM
CVE-2018-11830
all versions
Improper input validation in QCPE create function may lead to integer overflow in Snapdragon Auto, Snapdragon Consumer Electronics
7.8HIGH
CVE-2018-5839
all versions
Improperly configured memory protection allows read/write access to modem image from HLOS kernel in Snapdragon Auto, Snapdragon Co
7.1HIGH
CVE-2018-13904
all versions
Improper input validation in SCM handler to access storage in TZ can lead to unauthorized access in Snapdragon Auto, Snapdragon Co
9.8CRITICAL
CVE-2018-11945
all versions
Improper input validation in wireless service messaging module for data received from broadcast messages can lead to heap overflow
9.8CRITICAL
CVE-2018-11935
all versions
Improper input validation might result in incorrect app id returned to the caller Instead of returning failure in Snapdragon Auto,
5.3MEDIUM
CVE-2018-11932
all versions
Improper input validation can lead RW access to secure subsystem from HLOS in Snapdragon Auto, Snapdragon Compute, Snapdragon Conn
9.1CRITICAL
CVE-2018-11864
all versions
Bytes can be written to fuses from Secure region which can be read later by HLOS in Snapdragon Auto, Snapdragon Compute, Snapdrago
5.5MEDIUM
CVE-2018-11845
all versions
Usage of non-time-constant comparison functions can lead to information leakage through side channel analysis in Snapdragon Auto,
5.5MEDIUM
CVE-2018-11820
all versions
Use of non-time constant memcmp function creates side channel that leaks information and leads to cryptographic issues in Snapdrag
5.5MEDIUM
CVE-2018-11289
all versions
Data truncation during higher to lower type conversion which causes less memory allocation than desired can lead to a buffer overf
7.8HIGH
CVE-2018-11888
all versions
Unauthorized access may be allowed by the SCP11 Crypto Services TA will processing commands from other TA in Snapdragon Auto, Snap
7.8HIGH
CVE-2018-11855
all versions
If an end user makes use of SCP11 sample OCE code without modification it could lead to a buffer overflow when transmitting a CAPD
7.8HIGH
CVE-2018-11847
all versions
Malicious TA can tag QSEE kernel memory and map to EL0, there by corrupting the physical memory as well it can be used to corrupt
7.8HIGH
CVE-2018-5867
all versions
Lack of checking input size can lead to buffer overflow In WideVine in snapdragon automobile, snapdragon mobile and snapdragon wea
7.8HIGH
CVE-2018-11999
all versions
Improper input validation in trustzone can lead to denial of service in snapdragon automobile, snapdragon mobile and snapdragon we
5.5MEDIUM
CVE-2018-11288
all versions
Possible undefined behavior due to lack of size check in function for parameter segment_idx can lead to a read outside of the inte
7.8HIGH
CVE-2018-11279
all versions
Lack of check of input size can make device memory get corrupted because of buffer overflow in snapdragon automobile, snapdragon m
8.8HIGH
CVE-2017-18332
all versions
Security keys are logged when any WCDMA call is configured or reconfigured in snapdragon automobile, snapdragon mobile and snapdra
5.5MEDIUM
CVE-2017-18160
all versions
AGPS session failure in GNSS module due to cyphersuites are hardcoded and needed manual update everytime in snapdragon mobile and
9.8CRITICAL
CVE-2017-18330
all versions
Buffer overflow in AES-CCM and AES-GCM encryption via initialization vector in snapdragon automobile, snapdragon mobile and snapdr
7.8HIGH
CVE-2017-18329
all versions
Possible Buffer overflow when transmitting an RTP packet in snapdragon automobile and snapdragon wear in versions MDM9615, MDM9625
7.8HIGH
CVE-2017-18328
all versions
Use after free in QSH client rule processing in snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MDM9635M, MDM9
7.8HIGH
CVE-2017-18327
all versions
Security keys are logged when any WCDMA call is configured or reconfigured in snapdragon automobile, snapdragon mobile and snapdra
5.5MEDIUM
CVE-2017-18326
all versions
Cryptographic keys are printed in modem debug messages in snapdragon mobile and snapdragon wear in versions MDM9607, MDM9615, MDM9
5.5MEDIUM
CVE-2017-18324
all versions
Cryptographic key material leaked in debug messages - GERAN in snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607,
5.5MEDIUM
CVE-2017-18323
all versions
Cryptographic key material leaked in TDSCDMA RRC debug messages in snapdragon automobile, snapdragon mobile and snapdragon wear in
5.5MEDIUM
CVE-2017-18322
all versions
Cryptographic key material leaked in WCDMA debug messages in snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, M
5.5MEDIUM
CVE-2017-18321
all versions
Security keys used by the terminal and NW for a session could be leaked in snapdragon mobile in versions MDM9650, MDM9655, SD 835,
5.5MEDIUM
CVE-2017-18319
all versions
Information leak in UIM API debug messages in snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MDM9615, MDM9625
5.5MEDIUM
CVE-2017-18141
all versions
When a 3rd party TEE has been loaded it is possible for the non-secure world to create a secure monitor call which will give it ac
7.8HIGH
CVE-2017-11004
all versions
A non-secure user may be able to access certain registers in snapdragon automobile, snapdragon mobile and snapdragon wear in versi
5.5MEDIUM
CVE-2018-5916
all versions
Buffer overread while decoding PDP modify request or network initiated secondary PDP activation in Snapdragon Automobile, Snapdrag
6.5MEDIUM
CVE-2018-5877
all versions
In the device programmer target-side code for firehose, a string may not be properly NULL terminated can lead to a incorrect buffe
7.8HIGH
CVE-2018-11996
all versions
When a malformed command is sent to the device programmer, an out-of-bounds access can occur in Snapdragon Automobile, Snapdragon
7.8HIGH
CVE-2017-18311
all versions
XPU Master privilege escalation is possible due to improper access control of unused configuration xPU ports where unused configur
7.8HIGH
CVE-2017-18124
all versions
During secure boot, addition is performed on uint8 ptrs which led to overflow issue in Small Cell SoC, Snapdragon Automobile, Snap
7.8HIGH
CVE-2018-11982
all versions
In Snapdragon (Mobile, Wear) in version MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/
8.8HIGH
CVE-2018-11269
all versions
In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8
7.8HIGH
CVE-2018-11268
all versions
In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8
7.8HIGH
CVE-2018-11267
all versions
In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9615, MDM9640, MDM9650, MDM9655, MSM8996AU, SD 210/SD 212
7.8HIGH
CVE-2017-18314
all versions
In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8
9.8CRITICAL
CVE-2018-11259
all versions
Due to Improper Access Control of NAND-based EFS in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, From fastboot on
7.7HIGH
CVE-2016-10501
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile, Snapdragon Wear, and Small Cell SoC FS
9.8CRITICAL
CVE-2016-10499
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
7.5HIGH
CVE-2016-10498
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9635M, MDM9645, MDM9650, MDM9655, SD
9.8CRITICAL
CVE-2016-10497
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
7.5HIGH
CVE-2016-10493
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon
9.8CRITICAL
CVE-2016-10491
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2016-10490
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon
9.8CRITICAL
CVE-2016-10487
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon
9.8CRITICAL
CVE-2016-10485
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear IPQ4019, MDM9206, M
9.8CRITICAL
CVE-2016-10484
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon
9.8CRITICAL
CVE-2016-10482
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2016-10466
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2016-10455
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
7.5HIGH
CVE-2016-10448
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2016-10429
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile,
7.5HIGH
CVE-2016-10427
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
7.5HIGH
CVE-2016-10422
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile,
9.8CRITICAL
CVE-2016-10421
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2016-10419
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9640, MDM9645, MDM9650, MDM9655, SD
9.8CRITICAL
CVE-2016-10417
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon
8.1HIGH
CVE-2016-10414
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile,
9.8CRITICAL
CVE-2016-10410
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2015-9224
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear
9.8CRITICAL
CVE-2015-9213
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
7.5HIGH
CVE-2015-9209
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2015-9201
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon
9.8CRITICAL
CVE-2015-9199
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile IPQ4019, MDM9
9.8CRITICAL
CVE-2015-9198
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon
9.8CRITICAL
CVE-2015-9195
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9625, MDM9635M, MDM9650, MDM9655, SD
9.8CRITICAL
CVE-2015-9191
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2015-9148
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile MDM9625, MDM9
9.8CRITICAL
CVE-2015-9146
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9625, MDM9635M, MDM9645, MDM9650, MD
9.8CRITICAL
CVE-2015-9145
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon
9.8CRITICAL
CVE-2015-9144
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2015-9143
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear IPQ4019, MDM9206, M
9.8CRITICAL
CVE-2015-9140
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile, Snapdragon Wear, and Small Cell SoC FS
7.5HIGH
CVE-2015-9139
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2015-9138
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear
9.8CRITICAL
CVE-2015-9137
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
7.5HIGH
CVE-2015-9126
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9607, MDM9635M,
9.8CRITICAL
CVE-2015-9123
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile, Snapdragon Wear, and Small Cell SoC FS
7.5HIGH
CVE-2015-9122
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2015-9119
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
7.5HIGH
CVE-2014-10052
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile, Snapdragon Wear, and Small Cell SoC FS
9.8CRITICAL
CVE-2014-10051
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, M
9.8CRITICAL
CVE-2014-10045
all versions
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear IPQ4019, MDM9206, M
9.8CRITICAL
CVE-2018-3592
all versions
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9635M, MD
9.8CRITICAL
CVE-2018-3591
all versions
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9635M, MD
9.8CRITICAL
CVE-2018-3589
all versions
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9650, MDM9655, SD 835, SD 845, SD 850, the vswr
9.8CRITICAL
CVE-2017-18142
all versions
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9650, MDM9655, SD 835, SD 845, SD 850, while pr
9.8CRITICAL
CVE-2017-18139
all versions
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9635M, MD
9.8CRITICAL
CVE-2017-18138
all versions
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9635M, MD
9.8CRITICAL
CVE-2017-18137
all versions
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9640, MDM9645, MDM9650, MDM9655, SD 450, SD 625
9.8CRITICAL
CVE-2017-18135
all versions
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9650, MDM9655, SD 450, SD 625, SD 650/52, SD 83
9.8CRITICAL
CVE-2017-18074
all versions
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9607, MDM9625, MDM9635M, MD
9.8CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin