Qualcomm
Qualcomm Mdm9650 Firmware: vulnerabilities and CVEs
Qualcomm Mdm9650 Firmware has 778 published vulnerabilities, 2 of them in the last 12 months. 264 are rated critical and 5 are listed by CISA as actively exploited.
CVEs778
Last 12 months2
Critical264
Actively exploited5
All vulnerabilities in the catalogue →⭐ Follow this technology
🔴 Actively exploited (CISA KEV)
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-33107 | High (7.8) | 0.89% | ⚠ Active exploitation | Dec 5, 2023 | Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call. |
| CVE-2023-33063 | High (7.8) | 0.69% | ⚠ Active exploitation | Dec 5, 2023 | Memory corruption in DSP Services during a remote call from HLOS to DSP. |
| CVE-2020-11261 | High (7.8) | 1.6% | ⚠ Active exploitation | Jun 9, 2021 | Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,… |
| CVE-2021-1906 | Medium (5.5) | 0.52% | ⚠ Active exploitation | May 7, 2021 | Improper handling of address deregistration on failure can lead to new GPU address allocation failure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,… |
| CVE-2021-1905 | High (7.8) | 1.5% | ⚠ Active exploitation | May 7, 2021 | Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial… |
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-27074 | High (7.8) | 0.08% | — | Nov 4, 2025 | Memory corruption while processing a GP command response. |
| CVE-2025-27053 | High (7.8) | 0.09% | — | Oct 9, 2025 | Memory corruption during PlayReady APP usecase while processing TA commands. |
| CVE-2025-21482 | High (7.1) | 0.08% | — | Sep 24, 2025 | Cryptographic issue while performing RSA PKCS padding decoding. |
| CVE-2025-27062 | High (7.8) | 0.08% | — | Aug 6, 2025 | Memory corruption while handling client exceptions, allowing unauthorized channel access. |
| CVE-2024-45562 | High (7.8) | 0.11% | — | May 6, 2025 | Memory corruption during concurrent access to server info object due to unprotected critical field. |
| CVE-2025-21429 | High (7.5) | 0.26% | — | Apr 7, 2025 | Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request. |
| CVE-2025-21428 | High (7.5) | 0.25% | — | Apr 7, 2025 | Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session. |
| CVE-2024-43066 | High (7.8) | 0.11% | — | Apr 7, 2025 | Memory corruption while handling file descriptor during listener registration/de-registration. |
| CVE-2024-33056 | High (7.8) | 0.10% | — | Dec 2, 2024 | Memory corruption when allocating and accessing an entry in an SMEM partition continuously. |
| CVE-2018-5852 | High (7.8) | 0.12% | — | Nov 26, 2024 | An unsigned integer underflow vulnerability in IPA driver result into a buffer over-read while reading NAT entry using debugfs command 'cat /sys/kernel/debug/ipa/ip4_nat' |
| CVE-2018-11952 | High (7.8) | 0.11% | — | Nov 26, 2024 | An image with a version lower than the fuse version may potentially be booted lead to improper authentication. |
| CVE-2018-11922 | Medium (5.5) | 0.23% | — | Nov 26, 2024 | Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user. |
| CVE-2017-9711 | High (7.8) | 0.12% | — | Nov 22, 2024 | Certain unprivileged processes are able to perform IOCTL calls. |
| CVE-2024-38423 | High (7.8) | 0.10% | — | Nov 4, 2024 | Memory corruption while processing GPU page table switch. |
| CVE-2024-38422 | High (7.8) | 0.10% | — | Nov 4, 2024 | Memory corruption while processing voice packet with arbitrary data received from ADSP. |
| CVE-2024-33060 | High (7.8) | 0.17% | — | Sep 2, 2024 | Memory corruption when two threads try to map and unmap a single node simultaneously. |
| CVE-2024-33051 | High (7.5) | 0.30% | — | Sep 2, 2024 | Transient DOS while processing TIM IE from beacon frame as there is no check for IE length. |
| CVE-2024-33014 | High (7.5) | 0.32% | — | Aug 5, 2024 | Transient DOS while parsing ESP IE from beacon/probe response frame. |
| CVE-2024-23373 | High (7.8) | 0.15% | — | Jul 1, 2024 | Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released. |
| CVE-2024-23368 | High (7.8) | 0.10% | — | Jul 1, 2024 | Memory corruption when allocating and accessing an entry in an SMEM partition. |
| CVE-2024-21461 | High (7.8) | 0.10% | — | Jul 1, 2024 | Memory corruption while performing finish HMAC operation when context is freed by keymaster. |
| CVE-2024-21471 | High (7.8) | 0.11% | — | May 6, 2024 | Memory corruption when IOMMU unmap of a GPU buffer fails in Linux. |
| CVE-2024-21468 | High (7.8) | 0.11% | — | Apr 1, 2024 | Memory corruption when there is failed unmap operation in GPU. |
| CVE-2023-33023 | High (7.8) | 0.11% | — | Apr 1, 2024 | Memory corruption while processing finish_sign command to pass a rsp buffer. |
| CVE-2023-28547 | High (7.8) | 0.11% | — | Apr 1, 2024 | Memory corruption in SPS Application while requesting for public key in sorter TA. |
| CVE-2023-33066 | High (7.8) | 0.11% | — | Mar 4, 2024 | Memory corruption in Audio while processing RT proxy port register driver. |
| CVE-2023-33069 | High (7.8) | 0.11% | — | Feb 6, 2024 | Memory corruption in Audio while processing the calibration data returned from ACDB loader. |
| CVE-2023-33068 | High (7.8) | 0.11% | — | Feb 6, 2024 | Memory corruption in Audio while processing IIR config data from AFE calibration block. |
| CVE-2023-33067 | High (7.8) | 0.11% | — | Feb 6, 2024 | Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points. |
| CVE-2023-33065 | High (7.1) | 0.11% | — | Feb 6, 2024 | Information disclosure in Audio while accessing AVCS services from ADSP payload. |
🎯 How it gets exploited (ATT&CK techniques)
Number of CVEs of this technology mapped to each exploitation or primary-impact technique.