Total
215 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2025-59610 | 1 Qualcomm | 472 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, C-v2x 9150 and 469 more | 2026-07-22 | N/A | 6.4 MEDIUM |
| Memory Corruption when processing IOCTL requests with mismatched API versions due to concurrent modification of user-space buffer. | |||||
| CVE-2026-24085 | 1 Qualcomm | 546 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Apq8098 and 543 more | 2026-07-22 | N/A | 7.2 HIGH |
| Memory Corruption when processing display command line information due to improper initialization of a variable. | |||||
| CVE-2026-24091 | 1 Qualcomm | 546 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Apq8098 and 543 more | 2026-07-22 | N/A | 7.2 HIGH |
| Memory corruption while processing fastboot commands with improperly formatted input. | |||||
| CVE-2026-25268 | 1 Qualcomm | 256 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Ar8035 and 253 more | 2026-07-07 | N/A | 8.8 HIGH |
| Memory Corruption when processing invalid HT40 channel layouts during dynamic channel switching operations. | |||||
| CVE-2026-24082 | 1 Qualcomm | 352 Ar8031, Ar8031 Firmware, Ar8035 and 349 more | 2026-06-29 | N/A | 7.8 HIGH |
| Memory Corruption when copying data from a freed source while executing performance counter deselect operation. | |||||
| CVE-2026-21385 | 1 Qualcomm | 474 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Apq8098 and 471 more | 2026-06-17 | N/A | 7.8 HIGH |
| Memory corruption while using alignments for memory allocation. | |||||
| CVE-2025-47404 | 1 Qualcomm | 376 215 Mobile, 215 Mobile Firmware, 5g Fixed Wireless Access and 373 more | 2026-06-17 | N/A | 6.5 MEDIUM |
| Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified. | |||||
| CVE-2025-47401 | 1 Qualcomm | 490 Ar8035, Ar8035 Firmware, Cologne and 487 more | 2026-06-17 | N/A | 6.5 MEDIUM |
| Transient DOS when processing target power rate tables during channel configuration. | |||||
| CVE-2025-47392 | 1 Qualcomm | 308 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Ar8035 and 305 more | 2026-06-17 | N/A | 8.8 HIGH |
| Memory corruption when decoding corrupted satellite data files with invalid signature offsets. | |||||
| CVE-2025-47386 | 1 Qualcomm | 340 Ar8031, Ar8031 Firmware, Ar8035 and 337 more | 2026-06-17 | N/A | 7.8 HIGH |
| Memory Corruption while invoking IOCTL calls when concurrent access to shared buffer occurs. | |||||
| CVE-2025-47384 | 1 Qualcomm | 86 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Fastconnect 6200 and 83 more | 2026-06-17 | N/A | 6.5 MEDIUM |
| Transient DOS when MAC configures config id greater than supported maximum value. | |||||
| CVE-2025-47383 | 1 Qualcomm | 412 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, 9206 Lte Modem and 409 more | 2026-06-17 | N/A | 7.2 HIGH |
| Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE. | |||||
| CVE-2025-47379 | 1 Qualcomm | 356 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Ar8031 and 353 more | 2026-06-17 | N/A | 7.8 HIGH |
| Memory Corruption when concurrent access to shared buffer occurs due to improper synchronization between assignment and deallocation of buffer resources. | |||||
| CVE-2025-47376 | 1 Qualcomm | 340 Ar8031, Ar8031 Firmware, Ar8035 and 337 more | 2026-06-17 | N/A | 7.8 HIGH |
| Memory Corruption when concurrent access to shared buffer occurs during IOCTL calls. | |||||
| CVE-2025-47375 | 1 Qualcomm | 338 Ar8031, Ar8031 Firmware, Ar8035 and 335 more | 2026-06-17 | N/A | 7.8 HIGH |
| Memory corruption while handling different IOCTL calls from the user-space simultaneously. | |||||
| CVE-2025-47371 | 1 Qualcomm | 250 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Ar8035 and 247 more | 2026-06-17 | N/A | 6.5 MEDIUM |
| Transient DOS when an LTE RLC packet with invalid TB is received by UE. | |||||
| CVE-2025-47370 | 1 Qualcomm | 272 Ar8035, Ar8035 Firmware, Csrb31024 and 269 more | 2026-06-17 | N/A | 6.5 MEDIUM |
| Transient DOS when a remote device sends an invalid connection request during BT connectable LE scan. | |||||
| CVE-2025-47369 | 1 Qualcomm | 350 Ar8035, Ar8035 Firmware, Csra6620 and 347 more | 2026-06-17 | N/A | 5.5 MEDIUM |
| Information disclosure when a weak hashed value is returned to userland code in response to a IOCTL call to obtain a session ID. | |||||
| CVE-2025-47333 | 1 Qualcomm | 478 Aqt1000, Aqt1000 Firmware, Ar8031 and 475 more | 2026-06-17 | N/A | 6.6 MEDIUM |
| Memory corruption while handling buffer mapping operations in the cryptographic driver. | |||||
| CVE-2025-47331 | 1 Qualcomm | 598 Ar8031, Ar8031 Firmware, Ar8035 and 595 more | 2026-06-17 | N/A | 6.1 MEDIUM |
| Information disclosure while processing a firmware event. | |||||
