Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
448 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.5) | 0.11% | — | Qualcomm SD 450 FirmwareQualcomm SD 625 FirmwareQualcomm SD 820 FirmwareQualcomm SD 820a Firmware+3 | 26/11/2024 | 17/6/2026 | Information disclosure possible while audio playback. | |
| Analizada | Media (5.5) | 0.11% | — | Qualcomm SD 450 FirmwareQualcomm SD 625 FirmwareQualcomm SD 820 FirmwareQualcomm SD 820a Firmware+3 | 26/11/2024 | 17/6/2026 | Information disclosure due to uninitialized variable. | |
| Analizada | Media (5.5) | 0.23% | — | Qualcomm Mdm9206 FirmwareQualcomm Mdm9607 FirmwareQualcomm Mdm9640 FirmwareQualcomm Mdm9650 Firmware+18 | 26/11/2024 | 17/6/2026 | Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user. | |
| Analizada | Crítica (9.8) | 0.35% | — | Qualcomm SD 450 FirmwareQualcomm SD 625 FirmwareQualcomm SD 820 FirmwareQualcomm SD 820a Firmware+3 | 26/11/2024 | 17/6/2026 | In multiple functions that process 802.11 frames, out-of-bounds reads can occur due to insufficient validation. | |
| Analizada | Alta (7.8) | 0.12% | — | Qualcomm Mdm9206 FirmwareQualcomm Mdm9607 FirmwareQualcomm SD 835 FirmwareQualcomm SD 845 Firmware+1 | 26/11/2024 | 17/6/2026 | Buffer overwrite in the WLAN host driver by leveraging a compromised WLAN FW | |
| Analizada | Alta (7.8) | 0.10% | — | Qualcomm Mdm9206 FirmwareQualcomm Mdm9607 FirmwareQualcomm SD 835 FirmwareQualcomm SD 845 Firmware+1 | 26/11/2024 | 17/6/2026 | Initial xbl_sec revision does not have all the debug policy features and critical checks. | |
| Modificada | Alta (7.5) | 0.38% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Apq8017 FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8035 Firmware+185 | 2/5/2023 | 17/6/2026 | Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network. | |
| Modificada | Media (5.5) | 0.12% | — | Qualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Wcn3998 FirmwareQualcomm Qca6390 Firmware+95 | 2/5/2023 | 17/6/2026 | Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation. | |
| Modificada | Alta (7.8) | 0.12% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm Apq8016 FirmwareQualcomm Apq8017 Firmware+349 | 13/4/2023 | 17/6/2026 | Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target. | |
| Modificada | Alta (7.8) | 0.12% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm 9206 LTE Modem FirmwareQualcomm 9207 LTE Modem Firmware+221 | 13/4/2023 | 17/6/2026 | Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command length. | |
| Modificada | Media (6.8) | 0.19% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm 9206 LTE Modem FirmwareQualcomm 9207 LTE Modem Firmware+222 | 13/4/2023 | 17/6/2026 | Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card. | |
| Modificada | Alta (8.8) | 0.12% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Wcn3998 Firmware+124 | 13/4/2023 | 17/6/2026 | Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information. | |
| Modificada | Alta (7.8) | 0.12% | — | Qualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Wcn3998 FirmwareQualcomm Qca6390 Firmware+97 | 13/4/2023 | 17/6/2026 | Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment. | |
| Modificada | Alta (7.8) | 0.08% | — | Qualcomm 8998 FirmwareQualcomm 315 5G IOT Modem FirmwareQualcomm Apq8009 FirmwareQualcomm Aqt1000 Firmware+215 | 13/4/2023 | 17/6/2026 | Memory corruption due to double free in core while initializing the encryption key. | |
| Modificada | Media (6.8) | 0.20% | — | Qualcomm Apq8097 FirmwareQualcomm Apq8098 FirmwareQualcomm Ipq6000 FirmwareQualcomm Ipq6005 Firmware+75 | 14/6/2022 | 17/6/2026 | Buffer overflow in sahara protocol while processing commands leads to overwrite of secure configuration data in Snapdragon Mobile, Snapdragon Compute, Snapdragon Auto, Snapdragon IOT, Snapdragon Connectivity, Snapdragon Voice & Music | |
| Modificada | Crítica (9.8) | 0.91% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 FirmwareQualcomm Apq8053 Firmware+85 | 12/11/2020 | 17/6/2026 | u'When a non standard SIP sigcomp message is received from the network, then there may be chances of using more UDVM cycle or memory overflow' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8009, APQ8017, APQ8037, APQ8053,… | |
| Modificada | Alta (7.8) | 1.5% | — | Qualcomm Apq8052 FirmwareQualcomm Apq8056 FirmwareQualcomm Apq8076 FirmwareQualcomm Apq8096 Firmware+58 | 12/11/2020 | 17/6/2026 | Buffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8052, APQ8056, APQ8076, APQ8096, APQ8096SG, APQ8098, MDM9655, MSM8952, MSM8956, MSM8976, MSM8976SG,… | |
| Modificada | Alta (7.8) | 1.8% | — | Qualcomm Apq8098 FirmwareQualcomm Msm8998 FirmwareQualcomm Qcm4290 FirmwareQualcomm Qcm6125 Firmware+50 | 12/11/2020 | 17/6/2026 | Possible buffer overflow in Fastrpc while handling received parameters due to lack of validation on input parameters' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8098, MSM8998, QCM4290, QCM6125, QCS410, QCS4290, QCS610, QCS6125, QSM8250, QSM8350,… | |
| Modificada | Alta (7.1) | 0.19% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8096au FirmwareQualcomm Apq8098 FirmwareQualcomm Mdm8207 Firmware+77 | 12/11/2020 | 17/6/2026 | u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8096AU,… | |
| Modificada | Alta (7.8) | 0.20% | — | Qualcomm Mdm9205 FirmwareQualcomm Qcm4290 FirmwareQualcomm Qcs405 FirmwareQualcomm Qcs410 Firmware+49 | 12/11/2020 | 17/6/2026 | u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security metadata while processing objects to be loaded' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon… | |
| Modificada | Media (5.5) | 0.19% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8009w FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 Firmware+111 | 12/11/2020 | 17/6/2026 | u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attempts at getting user`s lock-screen password can be bypassed by performing the standard gatekeeper operations.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,… | |
| Modificada | Alta (7.5) | 0.53% | — | Qualcomm Agatti FirmwareQualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8053 Firmware+42 | 2/11/2020 | 17/6/2026 | u'While processing invalid connection request PDU which is nonstandard (interval or timeout is 0) from central device may lead peripheral system enter into dead lock state.(This CVE is equivalent to InvalidConnectionRequest(CVE-2019-19193) mentioned in sweyntooth paper)' in Snapdragon Auto, Snapdragon Compute,… | |
| Modificada | Alta (7.8) | 0.23% | — | Qualcomm Agatti FirmwareQualcomm Bitra FirmwareQualcomm Kamorta FirmwareQualcomm Nicobar Firmware+25 | 2/11/2020 | 17/6/2026 | u'Due to an incorrect SMMU configuration, the modem crypto engine can potentially compromise the hypervisor' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking… | |
| Modificada | Alta (7.8) | 0.22% | — | Qualcomm Agatti FirmwareQualcomm Apq8009 FirmwareQualcomm Apq8098 FirmwareQualcomm Bitra Firmware+41 | 2/11/2020 | 17/6/2026 | u'QSEE reads the access permission policy for the SMEM TOC partition from the SMEM TOC contents populated by XBL Loader and applies them without validation' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music,… | |
| Modificada | Crítica (9.1) | 0.88% | — | Qualcomm Agatti FirmwareQualcomm Apq8053 FirmwareQualcomm Apq8096au FirmwareQualcomm Apq8098 Firmware+49 | 2/11/2020 | 17/6/2026 | u'Potential out of bounds read while processing downlink NAS transport message due to improper length check of Information Element(IEI) NAS message container' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in Agatti, APQ8053,… |