Qualcomm
Qualcomm Snapdragon 8 GEN 3 Firmware: vulnerabilidades y CVE
Qualcomm Snapdragon 8 GEN 3 Firmware tiene 15 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE15
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-21424 | Alta (7.8) | 0.12% | — | 3 mar 2025 | Memory corruption while calling the NPU driver APIs concurrently. |
| CVE-2024-53027 | Alta (7.5) | 0.30% | — | 3 mar 2025 | Transient DOS may occur while processing the country IE. |
| CVE-2024-53025 | Media (5.5) | 0.10% | — | 3 mar 2025 | Transient DOS can occur while processing UCI command. |
| CVE-2024-53024 | Alta (7.8) | 0.12% | — | 3 mar 2025 | Memory corruption in display driver while detaching a device. |
| CVE-2024-53014 | Alta (7.8) | 0.12% | — | 3 mar 2025 | Memory corruption may occur while validating ports and channels in Audio driver. |
| CVE-2024-49836 | Alta (7.8) | 0.12% | — | 3 mar 2025 | Memory corruption may occur during the synchronization of the camera`s frame processing pipeline. |
| CVE-2024-45580 | Alta (7.8) | 0.12% | — | 3 mar 2025 | Memory corruption while handling multuple IOCTL calls from userspace for remote invocation. |
| CVE-2024-43056 | Media (6.5) | 0.11% | — | 3 mar 2025 | Transient DOS during hypervisor virtual I/O operation in a virtual machine. |
| CVE-2024-43051 | Media (5.5) | 0.11% | — | 3 mar 2025 | Information disclosure while deriving keys for a session for any Widevine use case. |
| CVE-2024-38426 | Media (5.3) | 0.27% | — | 3 mar 2025 | While processing the authentication message in UE, improper authentication may lead to information disclosure. |
| CVE-2024-33051 | Alta (7.5) | 0.30% | — | 2 sept 2024 | Transient DOS while processing TIM IE from beacon frame as there is no check for IE length. |
| CVE-2024-33050 | Alta (7.5) | 0.30% | — | 2 sept 2024 | Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper. |
| CVE-2024-33045 | Alta (7.8) | 0.12% | — | 2 sept 2024 | Memory corruption when BTFM client sends new messages over Slimbus to ADSP. |
| CVE-2024-33042 | Alta (7.8) | 0.13% | — | 2 sept 2024 | Memory corruption when Alternative Frequency offset value is set to 255. |
| CVE-2024-33038 | Alta (7.8) | 0.10% | — | 2 sept 2024 | Memory corruption while passing untrusted/corrupted pointers from DSP to EVA. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.