Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2862▼ 326 respecto a la semana anterior
Críticas / altas1389▼ 28 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)293▼ 216 respecto a la semana anterior
55 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 0.71% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8053+375 | 22/2/2021 | 17/6/2026 | A buffer overflow can occur when playing an MKV clip due to lack of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | |
| Modificada | Alta (7.8) | 0.18% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8037+421 | 22/2/2021 | 17/6/2026 | Improper access control when using mmap with the kgsl driver with a special offset value that can be provided to map the memstore of the GPU to user space in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music,… | |
| Modificada | Crítica (9.1) | 0.83% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8053 FirmwareQualcomm Apq8064au Firmware+510 | 22/2/2021 | 17/6/2026 | Possible buffer over read while processing P2P IE and NOA attribute of beacon and probe response frames due to improper validation of P2P IE and NOA attribute lengths in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon… | |
| Modificada | Crítica (9.1) | 0.83% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8053 FirmwareQualcomm Apq8096au Firmware+467 | 22/2/2021 | 17/6/2026 | Possible buffer over-read while parsing quiet IE in Rx beacon frame due to improper check of IE length in received beacon in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile,… | |
| Modificada | Crítica (9.8) | 0.89% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8009w FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8053 Firmware+344 | 22/2/2021 | 17/6/2026 | Before enqueuing a frame to the PE queue for further processing, an entry in a hash table can be deleted and using a stale version later can lead to use after free condition in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT,… | |
| Modificada | Alta (8.8) | 0.29% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8009w FirmwareQualcomm Apq8016 FirmwareQualcomm Apq8017 Firmware+533 | 22/2/2021 | 17/6/2026 | Possible memory corruption while processing EAPOL frames due to lack of validation of key length before using it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile,… | |
| Modificada | Alta (7.8) | 0.17% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8016 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 Firmware+515 | 22/2/2021 | 17/6/2026 | Possible memory corruption and information leakage in sub-system due to lack of check for validity and boundary compliance for parameters that are read from shared MSG RAM in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon… | |
| Modificada | Alta (7.8) | 0.17% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8016 FirmwareQualcomm Apq8064au FirmwareQualcomm Apq8096au Firmware+389 | 22/2/2021 | 17/6/2026 | Out of bound write and read in TA while processing command from NS side due to improper length check on command and response buffers in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music | |
| Modificada | Alta (8.8) | 0.17% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8009w FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 Firmware+403 | 22/2/2021 | 17/6/2026 | User can overwrite Security Code NV item without knowing current SPC due to improper validation of SPC code setting and device lock in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music,… | |
| Modificada | Crítica (9.8) | 0.83% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8009w FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8030 Firmware+501 | 22/2/2021 | 17/6/2026 | Out of bound memory access while playing music playbacks with crafted vorbis content due to improper checks in header extraction in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon… | |
| Modificada | Crítica (9.8) | 1.1% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8030+502 | 21/1/2021 | 17/6/2026 | Possible out of bound memory access in audio due to integer underflow while processing modified contents in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon… | |
| Modificada | Crítica (9.8) | 1.2% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8030+488 | 21/1/2021 | 17/6/2026 | Possible memory out of bound issue during music playback when an incorrect bit stream content is copied into array without checking the length of array in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon… | |
| Modificada | Alta (7.5) | 0.92% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8030+502 | 21/1/2021 | 17/6/2026 | Pointer variable which is freed is not cleared can result in memory corruption and leads to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables,… | |
| Modificada | Crítica (9.8) | 0.91% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8037+365 | 21/1/2021 | 17/6/2026 | Buffer over read can happen in video driver when playing clip with atomsize having value UINT32_MAX in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | |
| Modificada | Crítica (9.8) | 0.87% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8016Qualcomm Apq8017+551 | 21/1/2021 | 17/6/2026 | Out of bound reads might occur in while processing Service descriptor due to improper validation of length of fields in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile,… | |
| Modificada | Crítica (9.8) | 0.87% | — | Qualcomm Apq8009Qualcomm Apq8016Qualcomm Apq8017Qualcomm Apq8037+537 | 21/1/2021 | 17/6/2026 | Out of bounds reads while parsing NAN beacons attributes and OUIs due to improper length of field check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice… | |
| Modificada | Alta (7.5) | 0.78% | — | Qualcomm Apq8053Qualcomm Apq8064auQualcomm Apq8096auQualcomm Aqt1000+326 | 21/1/2021 | 17/6/2026 | Buffer over-read while parsing RPS due to lack of check of input validation on values received from user side. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile | |
| Modificada | Crítica (9.8) | 0.91% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8037+366 | 21/1/2021 | 17/6/2026 | Possible integer overflow can occur when stream info update is called when total number of streams detected are zero while parsing TS clip with invalid data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music,… | |
| Modificada | Media (6.7) | 0.21% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8037+147 | 21/1/2021 | 17/6/2026 | A process can potentially cause a buffer overflow in the display service allowing privilege escalation by executing code as that service in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | |
| Modificada | Alta (7) | 0.32% | 💥 PoC | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8037+400 | 21/1/2021 | 17/6/2026 | Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race condition. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | |
| Modificada | Crítica (9.8) | 1.2% | — | Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8037Qualcomm Apq8053+282 | 21/1/2021 | 17/6/2026 | Memory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | |
| Modificada | Alta (7.5) | 0.78% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8037+409 | 21/1/2021 | 17/6/2026 | Divide by zero issue can happen while updating delta extension header due to improper validation of master SN and extension header SN in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music,… | |
| Modificada | Crítica (9.1) | 0.88% | — | Qualcomm Apq8009Qualcomm Apq8009wQualcomm Apq8017Qualcomm Apq8037+410 | 21/1/2021 | 17/6/2026 | Buffer over-read while UE process invalid DL ROHC packet for decompression due to lack of check of size of compresses packet in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon… | |
| Modificada | Crítica (9.8) | 1.1% | — | Qualcomm Apq8009Qualcomm Apq8017Qualcomm Apq8030Qualcomm Apq8037+490 | 21/1/2021 | 17/6/2026 | Out of bound memory access during music playback with modified content due to copying data without checking destination buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music,… | |
| Modificada | Crítica (9.8) | 1.1% | — | Qualcomm Apq8017Qualcomm Apq8037Qualcomm Apq8052Qualcomm Apq8053+445 | 21/1/2021 | 17/6/2026 | Out of bound memory access during music playback with ALAC modified content due to improper validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired… |