« Volver al listado

Qualcomm

Qualcomm Qcn9074 Firmware: vulnerabilidades y CVE

Qualcomm Qcn9074 Firmware tiene 361 vulnerabilidades publicadas, 10 de ellas en los últimos 12 meses. 31 son críticas y 2 figuran en el catálogo de explotación activa de CISA.

CVE361
Últimos 12 meses10
Críticas31
Explotadas activamente2

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

🔴 Explotadas activamente (CISA KEV)

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2023-33063Alta (7.8)0.58%⚠ Explotación activa5 dic 2023
Memory corruption in DSP Services during a remote call from HLOS to DSP.
CVE-2023-33107Alta (7.8)0.74%⚠ Explotación activa5 dic 2023
Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2025-47339Alta (7.8)0.08%—7 ene 2026
Memory corruption while deinitializing a HDCP session.
CVE-2025-47331Media (6.1)0.08%—7 ene 2026
Information disclosure while processing a firmware event.
CVE-2025-47325Media (5.5)0.08%—18 dic 2025
Information disclosure while processing system calls with invalid parameters.
CVE-2025-27074Alta (7.8)0.08%—4 nov 2025
Memory corruption while processing a GP command response.
CVE-2025-27064Media (6.1)0.08%—4 nov 2025
Information disclosure while registering commands from clients with diag through diagHal.
CVE-2025-27060Alta (8.8)0.09%—9 oct 2025
Memory corruption while performing SCM call with malformed inputs.
CVE-2025-27054Alta (7.8)0.09%—9 oct 2025
Memory corruption while processing a malformed license file during reboot.
CVE-2025-27053Alta (7.8)0.09%—9 oct 2025
Memory corruption during PlayReady APP usecase while processing TA commands.
CVE-2025-27040Media (6.5)0.08%—9 oct 2025
Information disclosure may occur while processing the hypervisor log.
CVE-2025-27059Alta (8.8)0.09%—9 oct 2025
Memory corruption while performing SCM call.
CVE-2025-47328Alta (7.5)0.22%—24 sept 2025
Transient DOS while processing power control requests with invalid antenna or stream values.
CVE-2025-47326Alta (7.5)0.24%—24 sept 2025
Transient DOS while handling command data during power control processing.
CVE-2025-47318Alta (7.5)0.21%—24 sept 2025
Transient DOS while parsing the EPTM test control message to get the test pattern.
CVE-2025-27037Alta (7.8)0.09%—24 sept 2025
Memory corruption while processing config_dev IOCTL when camera kernel driver drops its reference to CPU buffers.
CVE-2025-21481Alta (7.8)0.07%—24 sept 2025
Memory corruption while performing private key encryption in trusted application.
CVE-2025-27030Media (6.1)0.08%—24 sept 2025
information disclosure while invoking calibration data from user space to update firmware size.
CVE-2025-27073Alta (7.5)0.21%—6 ago 2025
Transient DOS while creating NDP instance.
CVE-2025-27066Alta (7.5)0.28%—6 ago 2025
Transient DOS while processing an ANQP message.
CVE-2025-27065Alta (7.5)0.21%—6 ago 2025
Transient DOS while processing a frame with malformed shared-key descriptor.
CVE-2025-21474Alta (7.8)0.09%—6 ago 2025
Memory corruption while processing commands from A2dp sink command queue.
CVE-2025-21465Media (6.5)0.09%—6 ago 2025
Information disclosure while processing the hash segment in an MBN file.
CVE-2025-21464Media (6.5)0.09%—6 ago 2025
Information disclosure while reading data from an image using specified offset and size parameters.
CVE-2025-27061Alta (7.8)0.09%—8 jul 2025
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.
CVE-2025-27057Alta (7.5)0.23%—8 jul 2025
Transient DOS while handling beacon frames with invalid IE header length.
CVE-2025-27043Alta (7.8)0.09%—8 jul 2025
Memory corruption while processing manipulated payload in video firmware.
CVE-2025-27042Alta (7.8)0.09%—8 jul 2025
Memory corruption while processing video packets received from video firmware.
CVE-2025-21446Alta (7.5)0.22%—8 jul 2025
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
CVE-2025-27029Alta (7.5)0.24%—3 jun 2025
Transient DOS while processing the tone measurement response buffer when the response buffer is out of range.
CVE-2025-21463Alta (7.5)0.23%—3 jun 2025
Transient DOS while processing the EHT operation IE in the received beacon frame.
CVE-2024-53013Media (6.6)0.09%—3 jun 2025
Memory corruption may occur while processing voice call registration with user.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1059 Command and Scripting Interpreter27
  2. T1068 Exploitation for Privilege Escalation26
  3. T1190 Exploit Public-Facing Application23
  4. T1499.004 Application or System Exploitation14
  5. T1499 Endpoint Denial of Service4
  6. T1005 Data from Local System1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm