qualcomm kayıtları
qualcomm üreticisine ait 2.538 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 13 · %0,5
- Silahlaştırılmış
- 14 · %0,6
- Pre-auth RCE
- 23
- Düzeltme kaydı olan
- %0,2
- Yayından KEV’e ortanca
- 1 gün
Tekrar eden sınıflar
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')238
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer232
- CWE-416 Use After Free232
- CWE-126 Buffer Over-read205
- CWE-125 Out-of-bounds Read174
- CWE-20 Improper Input Validation161
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
2.538 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
64Bu hafta | CVE-2025-21479Silahlaştırılmış | Incorrect Authorization in Graphicsqualcomm · aqt1000 firmware · CWE-863 | Yüksek8,6 | KEV | %0,8 | 3 Haz 2025 |
64Bu hafta | CVE-2025-21480Silahlaştırılmış | Incorrect Authorization in Graphics Windowsqualcomm · aqt1000 firmware · CWE-863 | Yüksek8,6 | KEV | %0,5 | 3 Haz 2025 |
62Bu hafta | CVE-2013-2596Silahlaştırılmış | Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain Motorola build of Alinux · linux kernel · CWE-190 | Yüksek7,8 | KEV | %3,2 | 12 Nis 2013 |
61Bu hafta | CVE-2020-11261Silahlaştırılmış | Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdragon Auto, qualcomm · apq8009 firmware · CWE-787 | Yüksek7,8 | KEV | %1,6 | 9 Haz 2021 |
61Bu hafta | CVE-2021-1905Silahlaştırılmış | Possible use after free due to improper handling of memory mapping of multiple processes simultaneously.qualcomm · apq8009 firmware · CWE-416 | Yüksek7,8 | KEV | %1,5 | 7 May 2021 |
61Bu hafta | CVE-2026-21385Silahlaştırılmış | Integer Overflow or Wraparound in Graphicsqualcomm · sm7675p firmware · CWE-190 | Yüksek7,8 | KEV | %1,3 | 2 Mar 2026 |
61Bu hafta | CVE-2023-33106Silahlaştırılmış | Use of Out-of-range Pointer Offset in Graphicsqualcomm · ar8035 firmware · CWE-823 | Yüksek7,8 | KEV | %0,9 | 4 Ara 2023 |
61Bu hafta | CVE-2023-33107Silahlaştırılmış | Integer Overflow or Wraparound in Graphics Linuxqualcomm · 315 5g iot modem firmware · CWE-190 | Yüksek7,8 | KEV | %0,9 | 4 Ara 2023 |
61Bu hafta | CVE-2023-33063Silahlaştırılmış | Use After Free in DSP Servicesqualcomm · 315 5g iot modem firmware · CWE-416 | Yüksek7,8 | KEV | %0,7 | 4 Ara 2023 |
61Bu hafta | CVE-2024-43047Silahlaştırılmış | Use After Free in DSP Servicequalcomm · fastconnect 6700 firmware · CWE-416 | Yüksek7,8 | KEV | %0,7 | 7 Eki 2024 |
61Bu hafta | CVE-2022-22071Silahlaştırılmış | Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization is in progress in Snapdragon Aqualcomm · apq8053 firmware · CWE-416 | Yüksek7,8 | KEV | %0,5 | 14 Haz 2022 |
60Bu hafta | CVE-2025-27038Silahlaştırılmış | Use After Free in Graphicsqualcomm · ar8031 firmware · CWE-416 | Yüksek7,5 | KEV | %1,0 | 3 Haz 2025 |
52Planlayın | CVE-2021-1906Silahlaştırılmış | Improper handling of address deregistration on failure can lead to new GPU address allocation failure.qualcomm · apq8009 firmware | Orta5,5 | KEV | %0,5 | 7 May 2021 |
50Planlayın | CVE-2005-4267Silahlaştırılmış | Stack-based buffer overflow in Qualcomm WorldMail 3.0 allows remote attackers to execute arbitrary code via a long IMAP command that ends wiqualcomm · worldmail · CWE-119 | Yüksek7,5 | — | %66,8 | 21 Ara 2005 |
48Planlayın | CVE-2020-3657İstismar yok | u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client thqualcomm · apq8009 firmware · CWE-120 | Kritik9,8 | — | %28,3 | 2 Kas 2020 |
45Planlayın | CVE-2020-11117İstismar yok | u'In the lbd service, an external user can issue a specially crafted debug command to overwrite arbitrary files with arbitrary content resulqualcomm · ipq4019 firmware · CWE-77 | Kritik9,8 | — | %19,7 | 8 Eyl 2020 |
43Planlayın | CVE-2020-11264İstismar yok | Improper authentication of Non-EAPOL/WAPI plaintext frames during four-way handshake can lead to arbitrary network packet injection in Snapdqualcomm · apq8053 firmware · CWE-287 | Kritik9,8 | — | %13,2 | 8 Eyl 2021 |
43Planlayın | CVE-1999-0006Kavram kanıtı | Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command.qualcomm · qpopper · CWE-125 | Kritik9,8 | — | %12,1 | 14 Tem 1998 |
43Planlayın | CVE-2003-0143Kavram kanıtı | The pop_msg function in qpopper 4.0.x before 4.0.5fc2 does not null terminate a message buffer after a call to Qvsnprintf, which could allowqualcomm · qpopper | Kritik10,0 | — | %8,6 | 18 Mar 2003 |
41Planlayın | CVE-1999-0822Kavram kanıtı | Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command.qualcomm · qpopper | Kritik10,0 | — | %4,9 | 30 Kas 1999 |
41Planlayın | CVE-2001-1046İstismar yok | Buffer overflow in qpopper (aka qpop or popper) 4.0 through 4.0.2 allows remote attackers to gain privileges via a long username.qualcomm · qpopper | Kritik10,0 | — | %1,9 | 2 Haz 2001 |
40Planlayın | CVE-2021-30351İstismar yok | An out of bound memory access can occur due to improper validation of number of frames being passed during music playback in Snapdragon Autoqualcomm · apq8009 firmware · CWE-120 | Kritik9,8 | — | %4,0 | 3 Oca 2022 |
40Planlayın | CVE-2021-1965Kavram kanıtı | Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdragoqualcomm · aqt1000 firmware · CWE-20 | Kritik9,8 | — | %3,0 | 13 Tem 2021 |
40Planlayın | CVE-2020-11153İstismar yok | u'Out of bound memory access while processing GATT data received due to lack of check of pdu data length and leads to remote code execution'qualcomm · apq8053 firmware · CWE-787 | Kritik9,8 | — | %2,3 | 2 Kas 2020 |
40Planlayın | CVE-2017-14911İstismar yok | In Android before 2018-01-05 on Qualcomm Snapdragon IoT, Snapdragon Mobile, Snapdragon Automobile APQ8096AU, MDM9206, MDM9650, MSM8996AU, SDqualcomm · mdm9206 firmware · CWE-287 | Kritik9,8 | — | %2,2 | 30 Mar 2018 |
- CVE-2025-2147964Bu hafta
Incorrect Authorization in Graphics
YüksekCVSS 8,6KEVSilahlaştırılmışEPSS %1qualcomm · aqt1000 firmware3 Haz 2025
- CVE-2025-2148064Bu hafta
Incorrect Authorization in Graphics Windows
YüksekCVSS 8,6KEVSilahlaştırılmışEPSS %0qualcomm · aqt1000 firmware3 Haz 2025
- CVE-2013-259662Bu hafta
Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain Motorola build of A
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %3linux · linux kernel12 Nis 2013
- CVE-2020-1126161Bu hafta
Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdragon Auto,
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %2qualcomm · apq8009 firmware9 Haz 2021
- CVE-2021-190561Bu hafta
Possible use after free due to improper handling of memory mapping of multiple processes simultaneously.
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %2qualcomm · apq8009 firmware7 May 2021
- CVE-2026-2138561Bu hafta
Integer Overflow or Wraparound in Graphics
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %1qualcomm · sm7675p firmware2 Mar 2026
- CVE-2023-3310661Bu hafta
Use of Out-of-range Pointer Offset in Graphics
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %1qualcomm · ar8035 firmware4 Ara 2023
- CVE-2023-3310761Bu hafta
Integer Overflow or Wraparound in Graphics Linux
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %1qualcomm · 315 5g iot modem firmware4 Ara 2023
- CVE-2023-3306361Bu hafta
Use After Free in DSP Services
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %1qualcomm · 315 5g iot modem firmware4 Ara 2023
- CVE-2024-4304761Bu hafta
Use After Free in DSP Service
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %1qualcomm · fastconnect 6700 firmware7 Eki 2024
- CVE-2022-2207161Bu hafta
Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization is in progress in Snapdragon A
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %0qualcomm · apq8053 firmware14 Haz 2022
- CVE-2025-2703860Bu hafta
Use After Free in Graphics
YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %1qualcomm · ar8031 firmware3 Haz 2025
- CVE-2021-190652Planlayın
Improper handling of address deregistration on failure can lead to new GPU address allocation failure.
OrtaCVSS 5,5KEVSilahlaştırılmışEPSS %1qualcomm · apq8009 firmware7 May 2021
- CVE-2005-426750Planlayın
Stack-based buffer overflow in Qualcomm WorldMail 3.0 allows remote attackers to execute arbitrary code via a long IMAP command that ends wi
YüksekCVSS 7,5SilahlaştırılmışEPSS %67qualcomm · worldmail21 Ara 2005
- CVE-2020-365748Planlayın
u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client th
KritikCVSS 9,8İstismar yokEPSS %28qualcomm · apq8009 firmware2 Kas 2020
- CVE-2020-1111745Planlayın
u'In the lbd service, an external user can issue a specially crafted debug command to overwrite arbitrary files with arbitrary content resul
KritikCVSS 9,8İstismar yokEPSS %20qualcomm · ipq4019 firmware8 Eyl 2020
- CVE-2020-1126443Planlayın
Improper authentication of Non-EAPOL/WAPI plaintext frames during four-way handshake can lead to arbitrary network packet injection in Snapd
KritikCVSS 9,8İstismar yokEPSS %13qualcomm · apq8053 firmware8 Eyl 2021
- CVE-1999-000643Planlayın
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command.
KritikCVSS 9,8Kavram kanıtıEPSS %12qualcomm · qpopper14 Tem 1998
- CVE-2003-014343Planlayın
The pop_msg function in qpopper 4.0.x before 4.0.5fc2 does not null terminate a message buffer after a call to Qvsnprintf, which could allow
KritikCVSS 10,0Kavram kanıtıEPSS %9qualcomm · qpopper18 Mar 2003
- CVE-1999-082241Planlayın
Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command.
KritikCVSS 10,0Kavram kanıtıEPSS %5qualcomm · qpopper30 Kas 1999
- CVE-2001-104641Planlayın
Buffer overflow in qpopper (aka qpop or popper) 4.0 through 4.0.2 allows remote attackers to gain privileges via a long username.
KritikCVSS 10,0İstismar yokEPSS %2qualcomm · qpopper2 Haz 2001
- CVE-2021-3035140Planlayın
An out of bound memory access can occur due to improper validation of number of frames being passed during music playback in Snapdragon Auto
KritikCVSS 9,8İstismar yokEPSS %4qualcomm · apq8009 firmware3 Oca 2022
- CVE-2021-196540Planlayın
Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdrago
KritikCVSS 9,8Kavram kanıtıEPSS %3qualcomm · aqt1000 firmware13 Tem 2021
- CVE-2020-1115340Planlayın
u'Out of bound memory access while processing GATT data received due to lack of check of pdu data length and leads to remote code execution'
KritikCVSS 9,8İstismar yokEPSS %2qualcomm · apq8053 firmware2 Kas 2020
- CVE-2017-1491140Planlayın
In Android before 2018-01-05 on Qualcomm Snapdragon IoT, Snapdragon Mobile, Snapdragon Automobile APQ8096AU, MDM9206, MDM9650, MSM8996AU, SD
KritikCVSS 9,8İstismar yokEPSS %2qualcomm · mdm9206 firmware30 Mar 2018