threat
engine
.sh
Back
·
··:··
Home
/
Product
/
qualcomm snapdragon x5 lte modem firmware
Product
qualcomm snapdragon x5 lte modem firmware
69 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2026-21385
all versions
Memory corruption while using alignments for memory allocation.
7.8
HIGH
CVE-2025-47383
all versions
Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.
7.2
HIGH
CVE-2025-47320
all versions
Memory corruption while processing MFC channel configuration during music playback.
7.8
HIGH
CVE-2025-27053
all versions
Memory corruption during PlayReady APP usecase while processing TA commands.
7.8
HIGH
CVE-2025-47318
all versions
Transient DOS while parsing the EPTM test control message to get the test pattern.
7.5
HIGH
CVE-2025-21482
all versions
Cryptographic issue while performing RSA PKCS padding decoding.
7.1
HIGH
CVE-2025-21454
all versions
Transient DOS while processing received beacon frame.
7.5
HIGH
CVE-2025-21449
all versions
Transient DOS may occur while processing malformed length field in SSID IEs.
7.5
HIGH
CVE-2025-21430
all versions
Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.
7.5
HIGH
CVE-2025-21429
all versions
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.
7.5
HIGH
CVE-2025-21428
all versions
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session
7.5
HIGH
CVE-2024-33056
all versions
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
8.4
HIGH
CVE-2024-38423
all versions
Memory corruption while processing GPU page table switch.
7.8
HIGH
CVE-2024-38422
all versions
Memory corruption while processing voice packet with arbitrary data received from ADSP.
7.8
HIGH
CVE-2024-23353
all versions
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
7.5
HIGH
CVE-2023-43551
all versions
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immedia
9.1
CRITICAL
CVE-2024-21468
all versions
Memory corruption when there is failed unmap operation in GPU.
8.4
HIGH
CVE-2023-33066
all versions
Memory corruption in Audio while processing RT proxy port register driver.
8.4
HIGH
CVE-2023-33069
all versions
Memory corruption in Audio while processing the calibration data returned from ACDB loader.
6.7
MEDIUM
CVE-2023-33068
all versions
Memory corruption in Audio while processing IIR config data from AFE calibration block.
6.7
MEDIUM
CVE-2023-33067
all versions
Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.
6.7
MEDIUM
CVE-2023-43511
all versions
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains
IPPROTO_NONE
as the n
7.5
HIGH
CVE-2023-33120
all versions
Memory corruption in Audio when memory map command is executed consecutively in ADSP.
7.8
HIGH
CVE-2023-33110
all versions
The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP an
7.8
HIGH
CVE-2023-33033
all versions
Memory corruption in Audio during playback with speaker protection.
8.4
HIGH
CVE-2023-33030
all versions
Memory corruption in HLOS while running playready use-case.
9.3
CRITICAL
CVE-2023-33080
all versions
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
7.5
HIGH
CVE-2023-33018
all versions
Memory corruption while using the UIM diag command to get the operators name.
7.8
HIGH
CVE-2023-33017
all versions
Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
7.8
HIGH
CVE-2023-28551
all versions
Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.
7.8
HIGH
CVE-2023-28550
all versions
Memory corruption in MPP performance while accessing DSM watermark using external memory address.
7.8
HIGH
CVE-2023-33059
all versions
Memory corruption in Audio while processing the VOC packet data from ADSP.
7.8
HIGH
CVE-2023-33031
all versions
Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.
7.8
HIGH
CVE-2023-22388
all versions
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
9.8
CRITICAL
CVE-2023-24849
all versions
Information Disclosure in data Modem while parsing an FMTP line in an SDP message.
8.2
HIGH
CVE-2023-24848
all versions
Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value.
8.2
HIGH
CVE-2023-22385
all versions
Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
8.2
HIGH
CVE-2023-21628
all versions
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.
8.4
HIGH
CVE-2022-40521
all versions
Transient DOS due to improper authorization in Modem
7.5
HIGH
CVE-2022-40507
all versions
Memory corruption due to double free in Core while mapping HLOS address to the list.
8.4
HIGH
CVE-2022-33264
all versions
Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.
7.9
HIGH
CVE-2022-22076
all versions
information disclosure due to cryptographic issue in Core during RPMB read request.
7.1
HIGH
CVE-2023-21666
all versions
Memory Corruption in Graphics while accessing a buffer allocated through the graphics pool.
8.4
HIGH
CVE-2023-21665
all versions
Memory corruption in Graphics while importing a file.
8.4
HIGH
CVE-2022-40505
all versions
Information disclosure due to buffer over-read in Modem while parsing DNS hostname.
8.2
HIGH
CVE-2022-33304
all versions
Transient DOS due to NULL pointer dereference in Modem while performing pullup for received TCP/UDP packet.
7.5
HIGH
CVE-2022-40532
all versions
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
8.4
HIGH
CVE-2022-40503
all versions
Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.
8.2
HIGH
CVE-2022-33302
all versions
Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command le
6.8
MEDIUM
CVE-2022-33296
all versions
Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Neighbor List Update message.
5.9
MEDIUM
CVE-2022-33295
all versions
Information disclosure in Modem due to buffer over-read while parsing the wms message received given the buffer and its length.
8.2
HIGH
CVE-2022-33294
all versions
Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registration/update/bootstrap request mes
7.5
HIGH
CVE-2022-33291
all versions
Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.
8.2
HIGH
CVE-2022-33289
all versions
Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.
6.8
MEDIUM
CVE-2022-33287
all versions
Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.
8.2
HIGH
CVE-2022-33259
all versions
Memory corruption due to buffer copy without checking the size of input in modem while decoding raw SMS received.
9.8
CRITICAL
CVE-2022-33258
all versions
Information disclosure due to buffer over-read in modem while reading configuration parameters.
8.2
HIGH
CVE-2022-33228
all versions
Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination option in head
8.2
HIGH
CVE-2022-33223
all versions
Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding.
7.5
HIGH
CVE-2022-33222
all versions
Information disclosure due to buffer over-read while parsing DNS response packets in Modem.
8.2
HIGH
CVE-2022-33211
all versions
memory corruption in modem due to improper check while calculating size of serialized CoAP message
9.8
CRITICAL
CVE-2022-25747
all versions
Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message
8.2
HIGH
CVE-2022-25740
all versions
Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of the iface
9.8
CRITICAL
CVE-2022-25739
all versions
Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call
7.5
HIGH
CVE-2022-25737
all versions
Information disclosure in modem due to missing NULL check while reading packets received from local network
7.5
HIGH
CVE-2022-25731
all versions
Information disclosure in modem due to buffer over-read while processing packets from DNS server
7.5
HIGH
CVE-2022-25730
all versions
Information disclosure in modem due to improper check of IP type while processing DNS server query
8.2
HIGH
CVE-2022-25726
all versions
Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet
8.2
HIGH
CVE-2022-25678
all versions
Memory correction in modem due to buffer overwrite during coap connection
9.8
CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin