« Volver al listado

Qualcomm

Qualcomm SD 8CX Firmware: vulnerabilidades y CVE

Qualcomm SD 8CX Firmware tiene 301 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 50 son críticas y 1 figuran en el catálogo de explotación activa de CISA.

CVE301
Últimos 12 meses0
Críticas50
Explotadas activamente1

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

🔴 Explotadas activamente (CISA KEV)

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2020-11261Alta (7.8)1.6%⚠ Explotación activa9 jun 2021
Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,…

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2025-27032Alta (7.8)0.08%—24 sept 2025
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.
CVE-2025-21482Alta (7.1)0.08%—24 sept 2025
Cryptographic issue while performing RSA PKCS padding decoding.
CVE-2025-21465Media (6.5)0.09%—6 ago 2025
Information disclosure while processing the hash segment in an MBN file.
CVE-2025-21464Media (6.5)0.09%—6 ago 2025
Information disclosure while reading data from an image using specified offset and size parameters.
CVE-2025-21454Alta (7.5)0.22%—8 jul 2025
Transient DOS while processing received beacon frame.
CVE-2025-21449Alta (7.5)0.22%—8 jul 2025
Transient DOS may occur while processing malformed length field in SSID IEs.
CVE-2025-21422Alta (7.8)0.10%—8 jul 2025
Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.
CVE-2024-53009Alta (7.8)0.09%—8 jul 2025
Memory corruption while operating the mailbox in Automotive.
CVE-2024-53010Alta (7.8)0.08%—3 jun 2025
Memory corruption may occur while attaching VM when the HLOS retains access to VM.
CVE-2024-49842Alta (7.8)0.09%—6 may 2025
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
CVE-2024-49841Alta (7.8)0.11%—6 may 2025
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
CVE-2024-43046Media (5.5)0.11%—7 abr 2025
There may be information disclosure during memory re-allocation in TZ Secure OS.
CVE-2024-33058Alta (7.5)0.09%—7 abr 2025
Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP.
CVE-2024-43056Media (6.5)0.11%—3 mar 2025
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
CVE-2024-38420Alta (7.8)0.10%—3 feb 2025
Memory corruption while configuring a Hypervisor based input virtual device.
CVE-2024-33056Alta (7.8)0.10%—2 dic 2024
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
CVE-2024-33044Alta (7.8)0.10%—2 dic 2024
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
CVE-2024-33051Alta (7.5)0.30%—2 sept 2024
Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
CVE-2024-33016Media (6.8)0.15%—2 sept 2024
memory corruption when an invalid firehose patch command is invoked.
CVE-2024-23362Alta (7.1)0.12%—2 sept 2024
Cryptographic issue while parsing RSA keys in COBR format.
CVE-2024-21481Alta (8.4)0.11%—5 ago 2024
Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager.
CVE-2024-21469Alta (7.8)0.10%—1 jul 2024
Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
CVE-2024-21465Alta (7.8)0.10%—1 jul 2024
Memory corruption while processing key blob passed by the user.
CVE-2024-21462Media (5.5)0.09%—1 jul 2024
Transient DOS while loading the TA ELF file.
CVE-2023-43542Alta (7.8)0.10%—3 jun 2024
Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.
CVE-2023-43538Alta (7.8)0.10%—3 jun 2024
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
CVE-2023-43530Alta (7.8)0.11%—6 may 2024
Memory corruption in HLOS while checking for the storage type.
CVE-2023-33119Alta (7)0.08%—6 may 2024
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
CVE-2023-33115Alta (7.8)0.11%—1 abr 2024
Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.
CVE-2023-33066Alta (7.8)0.11%—4 mar 2024
Memory corruption in Audio while processing RT proxy port register driver.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1068 Exploitation for Privilege Escalation12
  2. T1059 Command and Scripting Interpreter9
  3. T1190 Exploit Public-Facing Application2
  4. T1499.004 Application or System Exploitation2
  5. T1005 Data from Local System1
  6. T1552.001 Credentials In Files1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm