Home/Product/qualcomm snapdragon 888\+ 5g mobile firmware
Product

qualcomm snapdragon 888\+ 5g mobile firmware

60 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-47404
all versions
Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified.
6.5MEDIUM
CVE-2025-47401
all versions
Transient DOS when processing target power rate tables during channel configuration.
6.5MEDIUM
CVE-2025-27061
all versions
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmwar
7.8HIGH
CVE-2025-27043
all versions
Memory corruption while processing manipulated payload in video firmware.
7.8HIGH
CVE-2025-27042
all versions
Memory corruption while processing video packets received from video firmware.
7.8HIGH
CVE-2025-21454
all versions
Transient DOS while processing received beacon frame.
7.5HIGH
CVE-2025-21450
all versions
Cryptographic issue occurs due to use of insecure connection method while downloading.
9.1CRITICAL
CVE-2025-21449
all versions
Transient DOS may occur while processing malformed length field in SSID IEs.
7.5HIGH
CVE-2025-21446
all versions
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
7.5HIGH
CVE-2025-21433
all versions
Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.
6.2MEDIUM
CVE-2025-21432
all versions
Memory corruption while retrieving the CBOR data from TA.
7.8HIGH
CVE-2025-21427
all versions
Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.
8.2HIGH
CVE-2025-21422
all versions
Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.
7.1HIGH
CVE-2024-53009
all versions
Memory corruption while operating the mailbox in Automotive.
5.3MEDIUM
CVE-2025-21468
all versions
Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to write null
7.8HIGH
CVE-2025-21467
all versions
Memory corruption while reading the FW response from the shared queue.
7.8HIGH
CVE-2025-21453
all versions
Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures oc
7.8HIGH
CVE-2024-49845
all versions
Memory corruption during the FRS UDS generation process.
7.8HIGH
CVE-2024-49844
all versions
Memory corruption while triggering commands in the PlayReady Trusted application.
7.8HIGH
CVE-2024-49842
all versions
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
7.8HIGH
CVE-2024-49841
all versions
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
7.8HIGH
CVE-2024-49835
all versions
Memory corruption while reading secure file.
7.8HIGH
CVE-2024-45564
all versions
Memory corruption during concurrent access to server info object due to incorrect reference count update.
7.8HIGH
CVE-2024-45562
all versions
Memory corruption during concurrent access to server info object due to unprotected critical field.
6.6MEDIUM
CVE-2024-45554
all versions
Memory corruption during concurrent SSR execution due to race condition on the global maps list.
7.8HIGH
CVE-2024-49834
all versions
Memory corruption while power-up or power-down sequence of the camera sensor.
7.8HIGH
CVE-2024-38420
all versions
Memory corruption while configuring a Hypervisor based input virtual device.
8.8HIGH
CVE-2024-38414
all versions
Information disclosure while processing information on firmware image during core initialization.
6.1MEDIUM
CVE-2024-43047
all versions
Memory corruption while maintaining memory maps of HLOS memory.
7.8HIGH
CVE-2024-38402
all versions
Memory corruption while processing IOCTL call for getting group info.
7.8HIGH
CVE-2024-33060
all versions
Memory corruption when two threads try to map and unmap a single node simultaneously.
8.4HIGH
CVE-2024-33052
all versions
Memory corruption when user provides data for FM HCI command control operations.
7.8HIGH
CVE-2023-43556
all versions
Memory corruption in Hypervisor when platform information mentioned is not aligned.
9.3CRITICAL
CVE-2023-43555
all versions
Information disclosure in Video while parsing mp2 clip with invalid section length.
8.2HIGH
CVE-2023-43551
all versions
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immedia
9.1CRITICAL
CVE-2023-43542
all versions
Memory corruption while copying a keyblobs material when the key materials size is not accurately checked.
7.8HIGH
CVE-2023-43538
all versions
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
9.3CRITICAL
CVE-2024-21476
all versions
Memory corruption when the channel ID passed by user is not validated and further used.
7.8HIGH
CVE-2024-21475
all versions
Memory corruption when the payload received from firmware is not as per the expected protocol size.
7.8HIGH
CVE-2024-21471
all versions
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
8.4HIGH
CVE-2023-43531
all versions
Memory corruption while verifying the serialized header when the key pairs are generated.
8.4HIGH
CVE-2023-43530
all versions
Memory corruption in HLOS while checking for the storage type.
5.9MEDIUM
CVE-2023-43529
all versions
Transient DOS while processing IKEv2 Informational request messages, when a malformed fragment packet is received.
7.5HIGH
CVE-2023-33119
all versions
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
8.4HIGH
CVE-2024-21468
all versions
Memory corruption when there is failed unmap operation in GPU.
8.4HIGH
CVE-2024-21463
all versions
Memory corruption while processing Codec2 during v13k decoder pitch synthesis.
7.3HIGH
CVE-2023-33115
all versions
Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.
7.8HIGH
CVE-2023-33111
all versions
Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibra
5.5MEDIUM
CVE-2023-33101
all versions
Transient DOS while processing DL NAS TRANSPORT message with payload length 0.
7.5HIGH
CVE-2023-33099
all versions
Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR.
7.5HIGH
CVE-2023-33023
all versions
Memory corruption while processing finish_sign command to pass a rsp buffer.
8.4HIGH
CVE-2023-28547
all versions
Memory corruption in SPS Application while requesting for public key in sorter TA.
8.4HIGH
CVE-2023-43550
all versions
Memory corruption while processing a QMI request for allocating memory from a DHMS supported subsystem.
7.8HIGH
CVE-2023-43548
all versions
Memory corruption while parsing qcp clip with invalid chunk data size.
7.3HIGH
CVE-2023-33104
all versions
Transient DOS while processing PDU Release command with a parameter PDU ID out of range.
7.5HIGH
CVE-2023-33096
all versions
Transient DOS while processing DL NAS Transport message, as specified in 3GPP 24.501 v16.
7.5HIGH
CVE-2023-33095
all versions
Transient DOS while processing multiple payload container type with incorrect container length received in DL NAS transport OTA in
7.5HIGH
CVE-2023-33086
all versions
Transient DOS while processing multiple IKEV2 Informational Request to device from IPSEC server with different identifiers.
7.5HIGH
CVE-2023-33066
all versions
Memory corruption in Audio while processing RT proxy port register driver.
8.4HIGH
CVE-2023-28578
all versions
Memory corruption in Core Services while executing the command for removing a single event listener.
9.3CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin