Qualcomm
Qualcomm Snapdragon 460 Firmware: vulnerabilidades y CVE
Qualcomm Snapdragon 460 Firmware tiene 22 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE22
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-21424 | Alta (7.8) | 0.12% | — | 3 mar 2025 | Memory corruption while calling the NPU driver APIs concurrently. |
| CVE-2024-53027 | Alta (7.5) | 0.30% | — | 3 mar 2025 | Transient DOS may occur while processing the country IE. |
| CVE-2024-53024 | Alta (7.8) | 0.12% | — | 3 mar 2025 | Memory corruption in display driver while detaching a device. |
| CVE-2024-53014 | Alta (7.8) | 0.12% | — | 3 mar 2025 | Memory corruption may occur while validating ports and channels in Audio driver. |
| CVE-2024-43051 | Media (5.5) | 0.11% | — | 3 mar 2025 | Information disclosure while deriving keys for a session for any Widevine use case. |
| CVE-2024-38426 | Media (5.3) | 0.27% | — | 3 mar 2025 | While processing the authentication message in UE, improper authentication may lead to information disclosure. |
| CVE-2024-33051 | Alta (7.5) | 0.30% | — | 2 sept 2024 | Transient DOS while processing TIM IE from beacon frame as there is no check for IE length. |
| CVE-2024-33050 | Alta (7.5) | 0.30% | — | 2 sept 2024 | Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper. |
| CVE-2024-33045 | Alta (7.8) | 0.12% | — | 2 sept 2024 | Memory corruption when BTFM client sends new messages over Slimbus to ADSP. |
| CVE-2024-33042 | Alta (7.8) | 0.13% | — | 2 sept 2024 | Memory corruption when Alternative Frequency offset value is set to 255. |
| CVE-2023-28567 | Alta (7.8) | 0.12% | — | 5 sept 2023 | Memory corruption in WLAN HAL while handling command through WMI interfaces. |
| CVE-2023-28565 | Alta (7.8) | 0.12% | — | 5 sept 2023 | Memory corruption in WLAN HAL while handling command streams through WMI interfaces. |
| CVE-2023-28564 | Alta (7.8) | 0.12% | — | 5 sept 2023 | Memory corruption in WLAN HAL while passing command parameters through WMI interfaces. |
| CVE-2023-28562 | Crítica (9.8) | 0.43% | — | 5 sept 2023 | Memory corruption while handling payloads from remote ESL. |
| CVE-2023-28542 | Alta (7.8) | 0.12% | — | 4 jul 2023 | Memory Corruption in WLAN HOST while fetching TX status information. |
| CVE-2023-24854 | Alta (7.8) | 0.12% | — | 4 jul 2023 | Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message. |
| CVE-2023-24851 | Alta (7.8) | 0.12% | — | 4 jul 2023 | Memory Corruption in WLAN HOST while parsing QMI response message from firmware. |
| CVE-2023-22667 | Alta (7.8) | 0.12% | — | 4 jul 2023 | Memory Corruption in Audio while allocating the ion buffer during the music playback. |
| CVE-2023-22387 | Alta (7.8) | 0.12% | — | 4 jul 2023 | Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption. |
| CVE-2023-22386 | Alta (7.8) | 0.12% | — | 4 jul 2023 | Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory. |
| CVE-2023-21631 | Crítica (9.8) | 0.36% | — | 4 jul 2023 | Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network. |
| CVE-2023-21629 | Media (6.8) | 0.19% | — | 4 jul 2023 | Memory Corruption in Modem due to double free while parsing the PKCS15 sim files. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.