« Back to list

Qualcomm

Qualcomm Snapdragon 850 Mobile Compute Firmware: vulnerabilities and CVEs

Qualcomm Snapdragon 850 Mobile Compute Firmware has 14 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs14
Last 12 months0
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2025-21449High (7.5)0.22%—Jul 8, 2025
Transient DOS may occur while processing malformed length field in SSID IEs.
CVE-2025-21422High (7.8)0.10%—Jul 8, 2025
Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.
CVE-2024-53009High (7.8)0.09%—Jul 8, 2025
Memory corruption while operating the mailbox in Automotive.
CVE-2024-49842High (7.8)0.09%—May 6, 2025
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
CVE-2024-49841High (7.8)0.11%—May 6, 2025
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
CVE-2024-38420High (7.8)0.10%—Feb 3, 2025
Memory corruption while configuring a Hypervisor based input virtual device.
CVE-2023-43551High (7.5)0.26%—Jun 3, 2024
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
CVE-2023-43542High (7.8)0.10%—Jun 3, 2024
Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.
CVE-2023-43538High (7.8)0.10%—Jun 3, 2024
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
CVE-2023-43530High (7.8)0.11%—May 6, 2024
Memory corruption in HLOS while checking for the storage type.
CVE-2023-33119High (7)0.08%—May 6, 2024
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
CVE-2023-33115High (7.8)0.11%—Apr 1, 2024
Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.
CVE-2023-33066High (7.8)0.11%—Mar 4, 2024
Memory corruption in Audio while processing RT proxy port register driver.
CVE-2023-28578High (7.8)0.12%—Mar 4, 2024
Memory corruption in Core Services while executing the command for removing a single event listener.

🎯 How it gets exploited (ATT&CK techniques)

  1. T1068 Exploitation for Privilege Escalation5
  2. T1059 Command and Scripting Interpreter4
  3. T1005 Data from Local System1
  4. T1190 Exploit Public-Facing Application1
  5. T1499.004 Application or System Exploitation1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.

Other products by Qualcomm