Home/Product/qualcomm qep8111 firmware
Product

qualcomm qep8111 firmware

139 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-24082
all versions
Memory Corruption when copying data from a freed source while executing performance counter deselect operation.
7.8HIGH
CVE-2025-47404
all versions
Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified.
6.5MEDIUM
CVE-2025-47401
all versions
Transient DOS when processing target power rate tables during channel configuration.
6.5MEDIUM
CVE-2025-47392
all versions
Memory corruption when decoding corrupted satellite data files with invalid signature offsets.
8.8HIGH
CVE-2025-47389
all versions
Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation.
7.8HIGH
CVE-2025-47386
all versions
Memory Corruption while invoking IOCTL calls when concurrent access to shared buffer occurs.
7.8HIGH
CVE-2025-47383
all versions
Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.
7.2HIGH
CVE-2025-47379
all versions
Memory Corruption when concurrent access to shared buffer occurs due to improper synchronization between assignment and deallocati
7.8HIGH
CVE-2025-47377
all versions
Memory Corruption when accessing a buffer after it has been freed while processing IOCTL calls.
7.8HIGH
CVE-2025-47376
all versions
Memory Corruption when concurrent access to shared buffer occurs during IOCTL calls.
7.8HIGH
CVE-2025-47375
all versions
Memory corruption while handling different IOCTL calls from the user-space simultaneously.
7.8HIGH
CVE-2025-47373
all versions
Memory Corruption when accessing buffers with invalid length during TA invocation.
7.8HIGH
CVE-2025-47366
all versions
Cryptographic issue when a Trusted Zone with outdated code is triggered by a HLOS providing incorrect input.
7.1HIGH
CVE-2025-47348
all versions
Memory corruption while processing identity credential operations in the trusted application.
7.8HIGH
CVE-2025-47346
all versions
Memory corruption while processing a secure logging command in the trusted application.
7.8HIGH
CVE-2025-47345
all versions
Cryptographic issue may occur while encrypting license data.
8.4HIGH
CVE-2025-47339
all versions
Memory corruption while deinitializing a HDCP session.
7.8HIGH
CVE-2025-47333
all versions
Memory corruption while handling buffer mapping operations in the cryptographic driver.
6.6MEDIUM
CVE-2025-47331
all versions
Information disclosure while processing a firmware event.
6.1MEDIUM
CVE-2025-47330
all versions
Transient DOS while parsing video packets received from the video firmware.
5.5MEDIUM
CVE-2025-47323
all versions
Memory corruption while routing GPR packets between user and root when handling large data packet.
7.8HIGH
CVE-2025-47322
all versions
Memory corruption while handling IOCTL calls to set mode.
7.8HIGH
CVE-2025-47321
all versions
Memory corruption while copying packets received from unix clients.
7.8HIGH
CVE-2025-47320
all versions
Memory corruption while processing MFC channel configuration during music playback.
7.8HIGH
CVE-2025-47319
all versions
Information disclosure while exposing internal TA-to-TA communication APIs to HLOS
6.7MEDIUM
CVE-2025-27070
all versions
Memory corruption while performing encryption and decryption commands.
7.8HIGH
CVE-2025-27054
all versions
Memory corruption while processing a malformed license file during reboot.
7.8HIGH
CVE-2025-27053
all versions
Memory corruption during PlayReady APP usecase while processing TA commands.
7.8HIGH
CVE-2025-27034
all versions
Memory corruption while selecting the PLMN from SOR failed list.
9.8CRITICAL
CVE-2025-27032
all versions
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.
7.8HIGH
CVE-2025-21481
all versions
Memory corruption while performing private key encryption in trusted application.
7.8HIGH
CVE-2025-27066
all versions
Transient DOS while processing an ANQP message.
7.5HIGH
CVE-2025-21465
all versions
Information disclosure while processing the hash segment in an MBN file.
6.5MEDIUM
CVE-2025-21464
all versions
Information disclosure while reading data from an image using specified offset and size parameters.
6.5MEDIUM
CVE-2025-21452
all versions
Transient DOS while processing a random-access response (RAR) with an invalid PDU length on LTE network.
7.5HIGH
CVE-2025-27061
all versions
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmwar
7.8HIGH
CVE-2025-27052
all versions
Memory corruption while processing data packets in diag received from Unix clients.
7.8HIGH
CVE-2025-27043
all versions
Memory corruption while processing manipulated payload in video firmware.
7.8HIGH
CVE-2025-27042
all versions
Memory corruption while processing video packets received from video firmware.
7.8HIGH
CVE-2025-21450
all versions
Cryptographic issue occurs due to use of insecure connection method while downloading.
9.1CRITICAL
CVE-2025-21446
all versions
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
7.5HIGH
CVE-2025-21433
all versions
Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.
6.2MEDIUM
CVE-2025-21432
all versions
Memory corruption while retrieving the CBOR data from TA.
7.8HIGH
CVE-2025-21422
all versions
Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.
7.1HIGH
CVE-2024-53009
all versions
Memory corruption while operating the mailbox in Automotive.
5.3MEDIUM
CVE-2024-53010
all versions
Memory corruption may occur while attaching VM when the HLOS retains access to VM.
7.8HIGH
CVE-2025-21453
all versions
Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures oc
7.8HIGH
CVE-2024-49845
all versions
Memory corruption during the FRS UDS generation process.
7.8HIGH
CVE-2024-49844
all versions
Memory corruption while triggering commands in the PlayReady Trusted application.
7.8HIGH
CVE-2024-49842
all versions
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
7.8HIGH
CVE-2024-49841
all versions
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
7.8HIGH
CVE-2024-49835
all versions
Memory corruption while reading secure file.
7.8HIGH
CVE-2025-21448
all versions
Transient DOS may occur while parsing SSID in action frames.
7.5HIGH
CVE-2025-21430
all versions
Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.
7.5HIGH
CVE-2025-21428
all versions
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session
7.5HIGH
CVE-2024-49848
all versions
Memory corruption while processing multiple IOCTL calls from HLOS to DSP.
6.7MEDIUM
CVE-2024-45557
all versions
Memory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation.
7.8HIGH
CVE-2024-45551
all versions
Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verification fai
6.2MEDIUM
CVE-2024-45549
all versions
Information disclosure while creating MQ channels.
7.7HIGH
CVE-2024-43065
all versions
Cryptographic issues while generating an asymmetric key pair for RKP use cases.
7.1HIGH
CVE-2024-43046
all versions
There may be information disclosure during memory re-allocation in TZ Secure OS.
5.5MEDIUM
CVE-2024-33058
all versions
Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP.
7.5HIGH
CVE-2025-21424
all versions
Memory corruption while calling the NPU driver APIs concurrently.
7.8HIGH
CVE-2024-53027
all versions
Transient DOS may occur while processing the country IE.
7.5HIGH
CVE-2024-53023
all versions
Memory corruption may occur while accessing a variable during extended back to back tests.
7.8HIGH
CVE-2024-53014
all versions
Memory corruption may occur while validating ports and channels in Audio driver.
7.8HIGH
CVE-2024-43056
all versions
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
5.5MEDIUM
CVE-2024-43051
all versions
Information disclosure while deriving keys for a session for any Widevine use case.
5.5MEDIUM
CVE-2024-38426
all versions
While processing the authentication message in UE, improper authentication may lead to information disclosure.
5.4MEDIUM
CVE-2024-49838
all versions
Information disclosure while parsing the OCI IE with invalid length.
8.2HIGH
CVE-2024-45584
all versions
Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace.
7.8HIGH
CVE-2024-38420
all versions
Memory corruption while configuring a Hypervisor based input virtual device.
8.8HIGH
CVE-2024-45553
all versions
Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global list whil
7.8HIGH
CVE-2024-33056
all versions
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
8.4HIGH
CVE-2024-33044
all versions
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
8.4HIGH
CVE-2024-38424
all versions
Memory corruption during GNSS HAL process initialization.
7.8HIGH
CVE-2024-38422
all versions
Memory corruption while processing voice packet with arbitrary data received from ADSP.
7.8HIGH
CVE-2024-38419
all versions
Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.
7.8HIGH
CVE-2024-38408
all versions
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
8.2HIGH
CVE-2024-23385
all versions
Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE.
7.5HIGH
CVE-2024-23369
all versions
Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers.
7.8HIGH
CVE-2024-38402
all versions
Memory corruption while processing IOCTL call for getting group info.
7.8HIGH
CVE-2024-33060
all versions
Memory corruption when two threads try to map and unmap a single node simultaneously.
8.4HIGH
CVE-2024-33051
all versions
Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
7.5HIGH
CVE-2024-33050
all versions
Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improp
7.5HIGH
CVE-2024-33045
all versions
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
8.4HIGH
CVE-2024-33016
all versions
memory corruption when an invalid firehose patch command is invoked.
6.8MEDIUM
CVE-2024-23364
all versions
Transient DOS when processing the non-transmitted BSSID profile sub-elements present within the MBSSID Information Element (IE) of
7.5HIGH
CVE-2024-23362
all versions
Cryptographic issue while parsing RSA keys in COBR format.
7.1HIGH
CVE-2024-23359
all versions
Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network.
8.2HIGH
CVE-2024-33028
all versions
Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.
8.4HIGH
CVE-2024-33022
all versions
Memory corruption while allocating memory in HGSL driver.
8.4HIGH
CVE-2024-33021
all versions
Memory corruption while processing IOCTL call to set metainfo.
8.4HIGH
CVE-2024-33014
all versions
Transient DOS while parsing ESP IE from beacon/probe response frame.
7.5HIGH
CVE-2024-33012
all versions
Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon.
7.5HIGH
CVE-2024-33011
all versions
Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.
7.5HIGH
CVE-2024-33010
all versions
Transient DOS while parsing fragments of MBSSID IE from beacon frame.
7.5HIGH
CVE-2024-23357
all versions
Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.
6.2MEDIUM
CVE-2024-23356
all versions
Memory corruption during session sign renewal request calls in HLOS.
7.8HIGH
CVE-2024-23355
all versions
Memory corruption when keymaster operation imports a shared key.
7.8HIGH
CVE-2024-23353
all versions
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
7.5HIGH
CVE-2024-23352
all versions
Transient DOS when NAS receives ODAC criteria of length 1 and type 1 in registration accept OTA.
7.5HIGH
CVE-2024-23350
all versions
Permanent DOS when DL NAS transport receives multiple payloads such that one payload contains SOR container whose integrity check
6.5MEDIUM
CVE-2024-21481
all versions
Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager.
8.4HIGH
CVE-2024-23368
all versions
Memory corruption when allocating and accessing an entry in an SMEM partition.
7.8HIGH
CVE-2024-21469
all versions
Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
7.3HIGH
CVE-2024-21465
all versions
Memory corruption while processing key blob passed by the user.
7.8HIGH
CVE-2024-21462
all versions
Transient DOS while loading the TA ELF file.
7.1HIGH
CVE-2024-21461
all versions
Memory corruption while performing finish HMAC operation when context is freed by keymaster.
8.4HIGH
CVE-2024-21480
all versions
Memory corruption while playing audio file having large-sized input buffer.
7.3HIGH
CVE-2024-21475
all versions
Memory corruption when the payload received from firmware is not as per the expected protocol size.
7.8HIGH
CVE-2023-43531
all versions
Memory corruption while verifying the serialized header when the key pairs are generated.
8.4HIGH
CVE-2023-43530
all versions
Memory corruption in HLOS while checking for the storage type.
5.9MEDIUM
CVE-2023-43529
all versions
Transient DOS while processing IKEv2 Informational request messages, when a malformed fragment packet is received.
7.5HIGH
CVE-2023-33119
all versions
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
8.4HIGH
CVE-2024-21463
all versions
Memory corruption while processing Codec2 during v13k decoder pitch synthesis.
7.3HIGH
CVE-2023-33115
all versions
Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.
7.8HIGH
CVE-2023-33101
all versions
Transient DOS while processing DL NAS TRANSPORT message with payload length 0.
7.5HIGH
CVE-2023-33100
all versions
Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification.
7.5HIGH
CVE-2023-33099
all versions
Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR.
7.5HIGH
CVE-2023-33023
all versions
Memory corruption while processing finish_sign command to pass a rsp buffer.
8.4HIGH
CVE-2023-28547
all versions
Memory corruption in SPS Application while requesting for public key in sorter TA.
8.4HIGH
CVE-2023-43550
all versions
Memory corruption while processing a QMI request for allocating memory from a DHMS supported subsystem.
7.8HIGH
CVE-2023-43547
all versions
Memory corruption while invoking IOCTLs calls in Automotive Multimedia.
8.4HIGH
CVE-2023-43546
all versions
Memory corruption while invoking HGSL IOCTL context create.
8.4HIGH
CVE-2023-33104
all versions
Transient DOS while processing PDU Release command with a parameter PDU ID out of range.
7.5HIGH
CVE-2023-33103
all versions
Transient DOS while processing CAG info IE received from NW.
7.5HIGH
CVE-2023-33096
all versions
Transient DOS while processing DL NAS Transport message, as specified in 3GPP 24.501 v16.
7.5HIGH
CVE-2023-33095
all versions
Transient DOS while processing multiple payload container type with incorrect container length received in DL NAS transport OTA in
7.5HIGH
CVE-2023-33086
all versions
Transient DOS while processing multiple IKEV2 Informational Request to device from IPSEC server with different identifiers.
7.5HIGH
CVE-2023-28578
all versions
Memory corruption in Core Services while executing the command for removing a single event listener.
9.3CRITICAL
CVE-2023-43536
all versions
Transient DOS while parse fils IE with length equal to 1.
7.5HIGH
CVE-2023-43533
all versions
Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.
7.5HIGH
CVE-2023-43522
all versions
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
7.5HIGH
CVE-2023-43513
all versions
Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitr
7.8HIGH
CVE-2023-33076
all versions
Memory corruption in Core when updating rollback version for TA and OTA feature is enabled.
5.9MEDIUM
CVE-2023-33072
all versions
Memory corruption in Core while processing control functions.
9.3CRITICAL
CVE-2023-33057
all versions
Transient DOS in Multi-Mode Call Processor while processing UE policy container.
7.5HIGH
CVE-2023-33049
all versions
Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage.
7.5HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin