Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Qcc2076 Firmware
Total 100 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-21448 1 Qualcomm 538 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 535 more 2025-10-06 N/A 7.5 HIGH
Transient DOS may occur while parsing SSID in action frames.
CVE-2025-21435 1 Qualcomm 298 Ar8035, Ar8035 Firmware, Csr8811 and 295 more 2025-10-06 N/A 7.5 HIGH
Transient DOS may occur while parsing extended IE in beacon.
CVE-2025-21434 1 Qualcomm 244 Ar8035, Ar8035 Firmware, Fastconnect 6700 and 241 more 2025-10-06 N/A 7.5 HIGH
Transient DOS may occur while parsing EHT operation IE or EHT capability IE.
CVE-2025-21430 1 Qualcomm 450 315 5g Iot Modem, 315 5g Iot Modem Firmware, Apq8017 and 447 more 2025-10-06 N/A 7.5 HIGH
Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.
CVE-2025-21429 1 Qualcomm 364 9206 Lte Modem, 9206 Lte Modem Firmware, Apq8017 and 361 more 2025-10-06 N/A 7.5 HIGH
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.
CVE-2024-23364 1 Qualcomm 358 Ar8035, Ar8035 Firmware, Fastconnect 6200 and 355 more 2025-10-03 N/A 7.5 HIGH
Transient DOS when processing the non-transmitted BSSID profile sub-elements present within the MBSSID Information Element (IE) of a beacon frame that is received from over-the-air (OTA).
CVE-2025-27057 1 Qualcomm 422 Ar8035, Ar8035 Firmware, Csr8811 and 419 more 2025-09-25 N/A 7.5 HIGH
Transient DOS while handling beacon frames with invalid IE header length.
CVE-2025-21441 1 Qualcomm 98 Aqt1000, Aqt1000 Firmware, Fastconnect 6200 and 95 more 2025-08-20 N/A 7.8 HIGH
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
CVE-2025-21440 1 Qualcomm 98 Aqt1000, Aqt1000 Firmware, Fastconnect 6200 and 95 more 2025-08-20 N/A 7.8 HIGH
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
CVE-2025-27073 1 Qualcomm 340 Ar8035, Ar8035 Firmware, Csr8811 and 337 more 2025-08-20 N/A 7.5 HIGH
Transient DOS while creating NDP instance.
CVE-2025-27065 1 Qualcomm 300 Ar8035, Ar8035 Firmware, Fastconnect 6800 and 297 more 2025-08-20 N/A 7.5 HIGH
Transient DOS while processing a frame with malformed shared-key descriptor.
CVE-2024-21459 1 Qualcomm 350 Ar8035, Ar8035 Firmware, Ar9380 and 347 more 2025-08-15 N/A 6.5 MEDIUM
Information disclosure while handling beacon or probe response frame in STA.
CVE-2023-43534 1 Qualcomm 132 Ar8035, Ar8035 Firmware, Fastconnect 6900 and 129 more 2025-08-11 N/A 8.6 HIGH
Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
CVE-2023-33027 1 Qualcomm 656 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8098 and 653 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in WLAN Firmware while parsing rsn ies.
CVE-2023-43511 1 Qualcomm 712 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9206 Lte Modem and 709 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
CVE-2023-43536 1 Qualcomm 618 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 615 more 2025-08-11 N/A 7.5 HIGH
Transient DOS while parse fils IE with length equal to 1.
CVE-2023-28587 1 Qualcomm 380 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 377 more 2025-08-11 N/A 7.8 HIGH
Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.
CVE-2023-33047 1 Qualcomm 356 Ar8035, Ar8035 Firmware, Ar9380 and 353 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in WLAN Firmware while parsing no-inherit IES.
CVE-2024-53027 1 Qualcomm 424 205, 205 Firmware, Apq8017 and 421 more 2025-08-11 N/A 7.5 HIGH
Transient DOS may occur while processing the country IE.
CVE-2023-43533 1 Qualcomm 476 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 473 more 2025-08-11 N/A 7.5 HIGH
Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.