« Volver al listado

Qualcomm

Qualcomm Sm6475 Firmware: vulnerabilidades y CVE

Qualcomm Sm6475 Firmware tiene 18 vulnerabilidades publicadas, 16 de ellas en los últimos 12 meses. 0 son críticas y 1 figuran en el catálogo de explotación activa de CISA.

CVE18
Últimos 12 meses16
Críticas0
Explotadas activamente1

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

🔴 Explotadas activamente (CISA KEV)

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2025-27038Alta (7.5)1.0%⚠ Explotación activa3 jun 2025
Memory corruption while rendering graphics using Adreno GPU drivers in Chrome.

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2025-47366Alta (7.8)0.10%—2 feb 2026
Cryptographic issue when a Trusted Zone with outdated code is triggered by a HLOS providing incorrect input.
CVE-2025-47396Alta (7.8)0.08%—7 ene 2026
Memory corruption occurs when a secure application is launched on a device with insufficient memory.
CVE-2025-47394Alta (7.8)0.08%—7 ene 2026
Memory corruption when copying overlapping buffers during memory operations due to incorrect offset calculations.
CVE-2025-47388Alta (7.8)0.08%—7 ene 2026
Memory corruption while passing pages to DSP with an unaligned starting address.
CVE-2025-47348Alta (7.8)0.08%—7 ene 2026
Memory corruption while processing identity credential operations in the trusted application.
CVE-2025-47346Alta (7.8)0.08%—7 ene 2026
Memory corruption while processing a secure logging command in the trusted application.
CVE-2025-47345Alta (8.4)0.08%—7 ene 2026
Cryptographic issue may occur while encrypting license data.
CVE-2025-47339Alta (7.8)0.08%—7 ene 2026
Memory corruption while deinitializing a HDCP session.
CVE-2025-47334Media (6.7)0.08%—7 ene 2026
Memory corruption while processing shared command buffer packet between camera userspace and kernel.
CVE-2025-47333Media (6.6)0.08%—7 ene 2026
Memory corruption while handling buffer mapping operations in the cryptographic driver.
CVE-2025-47331Media (6.1)0.08%—7 ene 2026
Information disclosure while processing a firmware event.
CVE-2025-47330Media (5.5)0.07%—7 ene 2026
Transient DOS while parsing video packets received from the video firmware.
CVE-2025-47321Alta (7.8)0.08%—18 dic 2025
Memory corruption while copying packets received from unix clients.
CVE-2025-47319Media (6.7)0.09%—18 dic 2025
Information disclosure while exposing internal TA-to-TA communication APIs to HLOS
CVE-2025-47323Alta (7.8)0.09%—18 dic 2025
Memory corruption while routing GPR packets between user and root when handling large data packet.
CVE-2025-47354Alta (7.8)0.09%—9 oct 2025
Memory corruption while allocating buffers in DSP service.
CVE-2025-47317Alta (7.8)0.09%—24 sept 2025
Memory corruption due to global buffer overflow when a test command uses an invalid payload type.
CVE-2025-27038Alta (7.5)1.0%⚠ Explotación activa3 jun 2025
Memory corruption while rendering graphics using Adreno GPU drivers in Chrome.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1068 Exploitation for Privilege Escalation12
  2. T1059 Command and Scripting Interpreter11
  3. T1203 Exploitation for Client Execution1
  4. T1565.002 Transmitted Data Manipulation1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm