« Volver al listado

Qualcomm

Qualcomm Snapdragon 662 Mobile Firmware: vulnerabilidades y CVE

Qualcomm Snapdragon 662 Mobile Firmware tiene 39 vulnerabilidades publicadas, 6 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE39
Últimos 12 meses6
Críticas1
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-24082Alta (7.8)0.07%—4 may 2026
Memory Corruption when copying data from a freed source while executing performance counter deselect operation.
CVE-2025-47407Alta (7)0.05%—4 may 2026
Memory corruption while creating a process on the digital signal processor due to allocation failure at the kernel level.
CVE-2025-47404Alta (7.8)0.07%—4 may 2026
Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified.
CVE-2025-47398Alta (7.8)0.11%—2 feb 2026
Memory Corruption while deallocating graphics processing unit memory buffers due to improper handling of memory pointers.
CVE-2025-47397Alta (7.8)0.11%—2 feb 2026
Memory Corruption when initiating GPU memory mapping using scatter-gather lists due to unchecked IOMMU mapping errors.
CVE-2025-47366Alta (7.8)0.10%—2 feb 2026
Cryptographic issue when a Trusted Zone with outdated code is triggered by a HLOS providing incorrect input.
CVE-2025-27061Alta (7.8)0.09%—8 jul 2025
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.
CVE-2025-27052Alta (7.8)0.09%—8 jul 2025
Memory corruption while processing data packets in diag received from Unix clients.
CVE-2025-27043Alta (7.8)0.09%—8 jul 2025
Memory corruption while processing manipulated payload in video firmware.
CVE-2025-27042Alta (7.8)0.09%—8 jul 2025
Memory corruption while processing video packets received from video firmware.
CVE-2025-21454Alta (7.5)0.22%—8 jul 2025
Transient DOS while processing received beacon frame.
CVE-2025-21449Alta (7.5)0.22%—8 jul 2025
Transient DOS may occur while processing malformed length field in SSID IEs.
CVE-2025-21433Media (5.5)0.08%—8 jul 2025
Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.
CVE-2025-21432Alta (7.8)0.09%—8 jul 2025
Memory corruption while retrieving the CBOR data from TA.
CVE-2025-21427Alta (8.2)0.22%—8 jul 2025
Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.
CVE-2025-21422Alta (7.8)0.10%—8 jul 2025
Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.
CVE-2025-21467Alta (7.8)0.11%—6 may 2025
Memory corruption while reading the FW response from the shared queue.
CVE-2025-21453Alta (7.8)0.11%—6 may 2025
Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures occur.
CVE-2024-49835Alta (7.8)0.11%—6 may 2025
Memory corruption while reading secure file.
CVE-2024-53023Alta (7.8)0.12%—3 mar 2025
Memory corruption may occur while accessing a variable during extended back to back tests.
CVE-2024-49838Alta (7.5)0.31%—3 feb 2025
Information disclosure while parsing the OCI IE with invalid length.
CVE-2024-45584Alta (7.8)0.10%—3 feb 2025
Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace.
CVE-2024-45553Alta (7.8)0.13%—6 ene 2025
Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global list while another thread is using it for a process-specific task, issues may arise.
CVE-2024-38402Alta (7.8)0.16%—2 sept 2024
Memory corruption while processing IOCTL call for getting group info.
CVE-2024-33060Alta (7.8)0.17%—2 sept 2024
Memory corruption when two threads try to map and unmap a single node simultaneously.
CVE-2024-33052Alta (7.8)0.13%—2 sept 2024
Memory corruption when user provides data for FM HCI command control operations.
CVE-2023-43555Alta (7.5)0.24%—3 jun 2024
Information disclosure in Video while parsing mp2 clip with invalid section length.
CVE-2023-43551Alta (7.5)0.26%—3 jun 2024
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
CVE-2023-43542Alta (7.8)0.10%—3 jun 2024
Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.
CVE-2024-21477Alta (7.5)0.32%—6 may 2024
Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1068 Exploitation for Privilege Escalation18
  2. T1059 Command and Scripting Interpreter17
  3. T1190 Exploit Public-Facing Application4
  4. T1005 Data from Local System3
  5. T1499.004 Application or System Exploitation2

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm