Qualcomm
Qualcomm Qcn5054 Firmware: vulnerabilities and CVEs
Qualcomm Qcn5054 Firmware has 153 published vulnerabilities, 6 of them in the last 12 months. 18 are rated critical and 0 are listed by CISA as actively exploited.
CVEs153
Last 12 months6
Critical18
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-25275 | High (7.5) | 0.19% | — | Sep 17, 2026 | Transient DOS when processing authentication frames with invalid FILS information element header lengths. |
| CVE-2025-47403 | High (7.5) | 0.22% | — | May 4, 2026 | Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming. |
| CVE-2025-47331 | Medium (6.1) | 0.08% | — | Jan 7, 2026 | Information disclosure while processing a firmware event. |
| CVE-2025-47325 | Medium (5.5) | 0.08% | — | Dec 18, 2025 | Information disclosure while processing system calls with invalid parameters. |
| CVE-2025-27074 | High (7.8) | 0.09% | — | Nov 4, 2025 | Memory corruption while processing a GP command response. |
| CVE-2025-27040 | Medium (6.5) | 0.08% | — | Oct 9, 2025 | Information disclosure may occur while processing the hypervisor log. |
| CVE-2025-27073 | High (7.5) | 0.21% | — | Aug 6, 2025 | Transient DOS while creating NDP instance. |
| CVE-2025-27066 | High (7.5) | 0.28% | — | Aug 6, 2025 | Transient DOS while processing an ANQP message. |
| CVE-2025-27061 | High (7.8) | 0.09% | — | Jul 8, 2025 | Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware. |
| CVE-2025-27042 | High (7.8) | 0.09% | — | Jul 8, 2025 | Memory corruption while processing video packets received from video firmware. |
| CVE-2025-21446 | High (7.5) | 0.22% | — | Jul 8, 2025 | Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests. |
| CVE-2025-21448 | High (7.5) | 0.26% | — | Apr 7, 2025 | Transient DOS may occur while parsing SSID in action frames. |
| CVE-2024-43057 | High (7.8) | 0.12% | — | Mar 3, 2025 | Memory corruption while processing command in Glink linux. |
| CVE-2024-33014 | High (7.5) | 0.32% | — | Aug 5, 2024 | Transient DOS while parsing ESP IE from beacon/probe response frame. |
| CVE-2024-23368 | High (7.8) | 0.10% | — | Jul 1, 2024 | Memory corruption when allocating and accessing an entry in an SMEM partition. |
| CVE-2024-21473 | Critical (9.8) | 0.66% | — | Apr 1, 2024 | Memory corruption while redirecting log file to any file location with any file name. |
| CVE-2023-33105 | High (7.5) | 0.75% | — | Mar 4, 2024 | Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number. |
| CVE-2023-28578 | High (7.8) | 0.12% | — | Mar 4, 2024 | Memory corruption in Core Services while executing the command for removing a single event listener. |
| CVE-2023-43536 | High (7.5) | 0.32% | — | Feb 6, 2024 | Transient DOS while parse fils IE with length equal to 1. |
| CVE-2023-43523 | High (7.5) | 0.32% | — | Feb 6, 2024 | Transient DOS while processing 11AZ RTT management action frame received through OTA. |
| CVE-2023-43522 | High (7.5) | 0.32% | — | Feb 6, 2024 | Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL. |
| CVE-2023-43513 | High (7.8) | 0.11% | — | Feb 6, 2024 | Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. |
| CVE-2023-43511 | High (7.5) | 0.32% | — | Jan 2, 2024 | Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header. |
| CVE-2023-33109 | High (7.5) | 0.34% | — | Jan 2, 2024 | Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host. |
| CVE-2023-33062 | High (7.5) | 0.34% | — | Jan 2, 2024 | Transient DOS in WLAN Firmware while parsing a BTM request. |
| CVE-2023-33098 | High (7.5) | 0.47% | — | Dec 5, 2023 | Transient DOS while parsing WPA IES, when it is passed with length more than expected size. |
| CVE-2023-33097 | High (7.5) | 0.47% | — | Dec 5, 2023 | Transient DOS in WLAN Firmware while processing a FTMR frame. |
| CVE-2023-33089 | High (7.5) | 0.47% | — | Dec 5, 2023 | Transient DOS when processing a NULL buffer while parsing WLAN vdev. |
| CVE-2023-33088 | High (7.8) | 0.16% | — | Dec 5, 2023 | Memory corruption when processing cmd parameters while parsing vdev. |
| CVE-2023-33083 | Critical (9.8) | 0.61% | — | Dec 5, 2023 | Memory corruption in WLAN Host while processing RRM beacon on the AP. |
🎯 How it gets exploited (ATT&CK techniques)
Number of CVEs of this technology mapped to each exploitation or primary-impact technique.