threat
engine
.sh
Back
·
··:··
Home
/
Product
/
qualcomm snapdragon 8 gen 3 mobile firmware
Product
qualcomm snapdragon 8 gen 3 mobile firmware
90 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2026-24082
all versions
Memory Corruption when copying data from a freed source while executing performance counter deselect operation.
7.8
HIGH
CVE-2025-47404
all versions
Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified.
6.5
MEDIUM
CVE-2025-47403
all versions
Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming.
6.5
MEDIUM
CVE-2025-47401
all versions
Transient DOS when processing target power rate tables during channel configuration.
6.5
MEDIUM
CVE-2025-47402
all versions
Transient DOS when processing a received frame with an excessively large authentication information element.
6.5
MEDIUM
CVE-2025-47398
all versions
Memory Corruption while deallocating graphics processing unit memory buffers due to improper handling of memory pointers.
7.8
HIGH
CVE-2025-47397
all versions
Memory Corruption when initiating GPU memory mapping using scatter-gather lists due to unchecked IOMMU mapping errors.
7.8
HIGH
CVE-2025-47366
all versions
Cryptographic issue when a Trusted Zone with outdated code is triggered by a HLOS providing incorrect input.
7.1
HIGH
CVE-2025-27061
all versions
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmwar
7.8
HIGH
CVE-2025-27057
all versions
Transient DOS while handling beacon frames with invalid IE header length.
7.5
HIGH
CVE-2025-27056
all versions
Memory corruption during sub-system restart while processing clean-up to free up resources.
7.8
HIGH
CVE-2025-27052
all versions
Memory corruption while processing data packets in diag received from Unix clients.
7.8
HIGH
CVE-2025-27043
all versions
Memory corruption while processing manipulated payload in video firmware.
7.8
HIGH
CVE-2025-27042
all versions
Memory corruption while processing video packets received from video firmware.
7.8
HIGH
CVE-2025-21454
all versions
Transient DOS while processing received beacon frame.
7.5
HIGH
CVE-2025-21450
all versions
Cryptographic issue occurs due to use of insecure connection method while downloading.
9.1
CRITICAL
CVE-2025-21449
all versions
Transient DOS may occur while processing malformed length field in SSID IEs.
7.5
HIGH
CVE-2025-21446
all versions
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
7.5
HIGH
CVE-2025-21433
all versions
Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.
6.2
MEDIUM
CVE-2025-21432
all versions
Memory corruption while retrieving the CBOR data from TA.
7.8
HIGH
CVE-2025-21427
all versions
Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.
8.2
HIGH
CVE-2025-21422
all versions
Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.
7.1
HIGH
CVE-2024-53009
all versions
Memory corruption while operating the mailbox in Automotive.
5.3
MEDIUM
CVE-2025-21468
all versions
Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to write null
7.8
HIGH
CVE-2025-21467
all versions
Memory corruption while reading the FW response from the shared queue.
7.8
HIGH
CVE-2025-21459
all versions
Transient DOS while parsing per STA profile in ML IE.
7.5
HIGH
CVE-2025-21453
all versions
Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures oc
7.8
HIGH
CVE-2024-49847
all versions
Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key data IE.
7.5
HIGH
CVE-2024-49845
all versions
Memory corruption during the FRS UDS generation process.
7.8
HIGH
CVE-2024-49844
all versions
Memory corruption while triggering commands in the PlayReady Trusted application.
7.8
HIGH
CVE-2024-49842
all versions
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
7.8
HIGH
CVE-2024-49841
all versions
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
7.8
HIGH
CVE-2024-49835
all versions
Memory corruption while reading secure file.
7.8
HIGH
CVE-2024-45583
all versions
Memory corruption while handling multiple IOCTL calls from userspace to operate DMA operations.
6.6
MEDIUM
CVE-2024-49843
all versions
Memory corruption while processing IOCTL from user space to handle GPU AHB bus error.
7.8
HIGH
CVE-2024-49839
all versions
Memory corruption during management frame processing due to mismatch in T2LM info element.
8.2
HIGH
CVE-2024-49838
all versions
Information disclosure while parsing the OCI IE with invalid length.
8.2
HIGH
CVE-2024-49834
all versions
Memory corruption while power-up or power-down sequence of the camera sensor.
7.8
HIGH
CVE-2024-49833
all versions
Memory corruption can occur in the camera when an invalid CID is used.
7.8
HIGH
CVE-2024-49832
all versions
Memory corruption in Camera due to unusually high number of nodes passed to AXI port.
7.8
HIGH
CVE-2024-45584
all versions
Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace.
7.8
HIGH
CVE-2024-45582
all versions
Memory corruption while validating number of devices in Camera kernel .
7.8
HIGH
CVE-2024-45571
all versions
Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.
7.8
HIGH
CVE-2024-45569
all versions
Memory corruption while parsing the ML IE due to invalid frame content.
9.8
CRITICAL
CVE-2024-38420
all versions
Memory corruption while configuring a Hypervisor based input virtual device.
8.8
HIGH
CVE-2024-38413
all versions
Memory corruption while processing frame packets.
6.6
MEDIUM
CVE-2024-38412
all versions
Memory corruption while invoking IOCTL calls from user-space to kernel-space to handle session errors.
6.6
MEDIUM
CVE-2024-38411
all versions
Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls.
6.6
MEDIUM
CVE-2024-38404
all versions
Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.
7.5
HIGH
CVE-2024-45558
all versions
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the
7.5
HIGH
CVE-2024-45553
all versions
Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global list whil
7.8
HIGH
CVE-2024-33059
all versions
Memory corruption while processing frame command IOCTL calls.
6.7
MEDIUM
CVE-2024-33055
all versions
Memory corruption while invoking IOCTL calls to unmap the DMA buffers.
6.7
MEDIUM
CVE-2024-33041
all versions
Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,
6.7
MEDIUM
CVE-2024-21464
all versions
Memory corruption while processing IPA statistics, when there are no active clients registered.
8.4
HIGH
CVE-2024-38402
all versions
Memory corruption while processing IOCTL call for getting group info.
7.8
HIGH
CVE-2024-33060
all versions
Memory corruption when two threads try to map and unmap a single node simultaneously.
8.4
HIGH
CVE-2024-33057
all versions
Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating t
7.5
HIGH
CVE-2024-33054
all versions
Memory corruption during the handshake between the Primary Virtual Machine and Trusted Virtual Machine.
7.8
HIGH
CVE-2024-33052
all versions
Memory corruption when user provides data for FM HCI command control operations.
7.8
HIGH
CVE-2024-33048
all versions
Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame.
7.5
HIGH
CVE-2024-23363
all versions
Transient DOS while processing an improperly formatted Fine Time Measurement (FTM) management frame.
7.5
HIGH
CVE-2024-23351
all versions
Memory corruption as GPU registers beyond the last protected range can be accessed through LPAC submissions.
8.4
HIGH
CVE-2024-21480
all versions
Memory corruption while playing audio file having large-sized input buffer.
7.3
HIGH
CVE-2024-21477
all versions
Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame.
7.5
HIGH
CVE-2024-21475
all versions
Memory corruption when the payload received from firmware is not as per the expected protocol size.
7.8
HIGH
CVE-2024-21471
all versions
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
8.4
HIGH
CVE-2023-43531
all versions
Memory corruption while verifying the serialized header when the key pairs are generated.
8.4
HIGH
CVE-2023-43530
all versions
Memory corruption in HLOS while checking for the storage type.
5.9
MEDIUM
CVE-2023-43529
all versions
Transient DOS while processing IKEv2 Informational request messages, when a malformed fragment packet is received.
7.5
HIGH
CVE-2023-33119
all versions
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
8.4
HIGH
CVE-2024-21463
all versions
Memory corruption while processing Codec2 during v13k decoder pitch synthesis.
7.3
HIGH
CVE-2023-33115
all versions
Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.
7.8
HIGH
CVE-2023-33101
all versions
Transient DOS while processing DL NAS TRANSPORT message with payload length 0.
7.5
HIGH
CVE-2023-33100
all versions
Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification.
7.5
HIGH
CVE-2023-33099
all versions
Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR.
7.5
HIGH
CVE-2023-33023
all versions
Memory corruption while processing finish_sign command to pass a rsp buffer.
8.4
HIGH
CVE-2023-28547
all versions
Memory corruption in SPS Application while requesting for public key in sorter TA.
8.4
HIGH
CVE-2023-43549
all versions
Memory corruption while processing TPC target power table in FTM TPC.
8.4
HIGH
CVE-2023-43539
all versions
Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol frame.
7.5
HIGH
CVE-2023-33105
all versions
Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction seque
7.5
HIGH
CVE-2023-33104
all versions
Transient DOS while processing PDU Release command with a parameter PDU ID out of range.
7.5
HIGH
CVE-2023-33103
all versions
Transient DOS while processing CAG info IE received from NW.
7.5
HIGH
CVE-2023-33096
all versions
Transient DOS while processing DL NAS Transport message, as specified in 3GPP 24.501 v16.
7.5
HIGH
CVE-2023-33095
all versions
Transient DOS while processing multiple payload container type with incorrect container length received in DL NAS transport OTA in
7.5
HIGH
CVE-2023-33086
all versions
Transient DOS while processing multiple IKEV2 Informational Request to device from IPSEC server with different identifiers.
7.5
HIGH
CVE-2023-33084
all versions
Transient DOS while processing IE fragments from server during DTLS handshake.
7.5
HIGH
CVE-2023-33066
all versions
Memory corruption in Audio while processing RT proxy port register driver.
8.4
HIGH
CVE-2023-28582
all versions
Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake.
9.8
CRITICAL
CVE-2023-28578
all versions
Memory corruption in Core Services while executing the command for removing a single event listener.
9.3
CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin