qualcomm
11 records · 0 with a public proof-of-concept
Disclosed vulnerabilities where the NVD names qualcomm as an affected vendor, highest CVSS first.
- CRITICAL 9.6CVE-2026-25289
Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.
sm7550p firmware · sm7550p · sm7635p firmware · sm7635p · sm7675 firmware · sm7675
- HIGH 8.1CVE-2026-24079
Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.
ar8035 firmware · ar8035 · csra6620 firmware · csra6620 · csra6640 firmware · csra6640
- HIGH 7.8CVE-2026-24083
Memory Corruption while processing IOCTL device driver requests with invalid arguments.
qam8295p firmware · qam8295p · qca6696 firmware · qca6696 · sa8295p firmware · sa8295p
- HIGH 7.8CVE-2026-24080
Memory Corruption when handling malformed request parameters in the fingerprint TA.
qam8295p firmware · qam8295p · qca6574au firmware · qca6574au · qca6595au firmware · qca6595au
- HIGH 7.8CVE-2026-21366
Memory corruption while processing a packet with a size close to the maximum allowed value.
lemans au lgit firmware · lemans au lgit · lemansau firmware · lemansau · qam8255p firmware · qam8255p
- HIGH 7.6CVE-2026-25292
Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration.
sm6225p firmware · sm6225p · sm6450p firmware · sm6450p · sm6475p firmware · sm6475p
- HIGH 7.5CVE-2026-24084
Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed capabilities.
sdx57m firmware · sdx57m · sdx61 firmware · sdx61 · sdx71m firmware · sdx71m
- HIGH 7.4CVE-2026-25288
Transient DOS when processing a short target wake time channel usage response frame with insufficient packet size.
orne firmware · orne · palawan25 firmware · palawan25 · pandeiro firmware · pandeiro
- MEDIUM 6.7CVE-2026-24076
Memory Corruption when processing registry values with incorrect types using a direct query method.
aqt1000 firmware · aqt1000 · cologne firmware · cologne · fastconnect 6200 firmware · fastconnect 6200
- MEDIUM 6.5CVE-2026-24078
Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling.
5g fixed wireless access platform firmware · 5g fixed wireless access platform · ar8035 firmware · ar8035 · csra6620 firmware · csra6620
- MEDIUM 6.5CVE-2026-24077
Information Disclosure when processing wireless network channel switch information with improperly formatted length fields.
aqt1000 firmware · aqt1000 · ar8035 firmware · ar8035 · csra6620 firmware · csra6620