CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

qualcomm

qca4004_firmware

163 known vulnerabilities · sorted by CVSS score

CVE-2022-25740
CRITICAL9.8

Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of the iface

qualcomm / mdm8207_firmware+11
Network
Published Apr 13, 2023
Page 1 of 9
CVE-2022-33259
CRITICAL9.8

Memory corruption due to buffer copy without checking the size of input in modem while decoding raw SMS received.

qualcomm / mdm8207_firmware+11
Network
Published Apr 13, 2023
CVE-2022-25729
CRITICAL9.8

Memory corruption in modem due to improper length check while copying into memory

qualcomm / ar8031_firmware+29
Network
Published Feb 12, 2023
CVE-2021-1920
CRITICAL9.8

Integer underflow can occur due to improper handling of incoming RTCP packets in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables

qualcomm / apq8009_firmware+171
Network
Published Sep 8, 2021
CVE-2022-25727
CRITICAL9.8

Memory Corruption in modem due to improper length check while copying into memory in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music

qualcomm / ar8031_firmware+20
Network
Published Nov 15, 2022
CVE-2021-1975
CRITICAL9.8

Possible heap overflow due to improper length check of domain while parsing the DNS response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables

qualcomm / apq8009_firmware+179
Network
Published Nov 12, 2021
CVE-2023-22388
CRITICAL9.8

Memory Corruption in Multi-mode Call Processor while processing bit mask API.

qualcomm / 315_5g_iot_modem_firmware+231
Network
Published Nov 7, 2023
CVE-2020-11227
CRITICAL9.8

Out of bound write while parsing RTT/TTY packet parsing due to lack of check of buffer size before copying into buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

qualcomm / apq8009_firmware+401
Network
Published Mar 17, 2021
CVE-2020-11170
CRITICAL9.8

Out of bound memory access while playing music playbacks with crafted vorbis content due to improper checks in header extraction in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

qualcomm / apq8009_firmware+506
Network
Published Feb 22, 2021
CVE-2021-1916
CRITICAL9.8

Possible buffer underflow due to lack of check for negative indices values when processing user provided input in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables

qualcomm / apq8009_firmware+182
Network
Published Sep 8, 2021
CVE-2021-30341
CRITICAL9.8

Improper buffer size validation of DSM packet received can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wearables

qualcomm / apq8009w_firmware+119
Network
Published Jun 14, 2022
CVE-2022-25745
CRITICAL9.8

Memory corruption in modem due to improper input validation while handling the incoming CoAP message

qualcomm / mdm9205_firmware+4
Network
Published Apr 13, 2023
CVE-2022-25678
CRITICAL9.8

Memory correction in modem due to buffer overwrite during coap connection

qualcomm / mdm8207_firmware+11
Network
Published Apr 13, 2023
CVE-2022-33211
CRITICAL9.8

memory corruption in modem due to improper check while calculating size of serialized CoAP message

qualcomm / mdm8207_firmware+11
Network
Published Apr 13, 2023
CVE-2023-33030
CRITICAL9.3

Memory corruption in HLOS while running playready use-case.

qualcomm / 315_5g_iot_modem_firmware+300
Local
Published Jan 2, 2024
CVE-2021-30285
CRITICAL9.3

Improper validation of memory region in Hypervisor can lead to incorrect region mapping in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking

qualcomm / ar8031_firmware+101
Local
Published Jan 13, 2022
CVE-2022-33257
CRITICAL9.3

Memory corruption in Core due to time-of-check time-of-use race condition during dump collection in trust zone.

qualcomm / aqt1000_firmware+139
Local
Published Mar 10, 2023
CVE-2021-30275
CRITICAL9.3

Possible integer overflow in page alignment interface due to lack of address and size validation before alignment in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking

qualcomm / ar8031_firmware+126
Local
Published Jan 3, 2022
CVE-2023-21651
CRITICAL9.3

Memory Corruption in Core due to incorrect type conversion or cast in secure_io_read/write function in TEE.

qualcomm / aqt1000_firmware+139
Local
Published Aug 8, 2023
CVE-2023-33032
CRITICAL9.3

Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.

qualcomm / 9205_lte_modem_firmware+119
Local
Published Jan 2, 2024