Vulnerability index

Browse CVEs

1,835 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Fastconnect 6200 Firmware HIGH 7.8
CVE-2025-47408

Memory corruption when another driver calls an IOCTL with invalid input/output buffer.

Mitigation only
Fix from $1,950 2026-05-04
Fastconnect 6900 Firmware HIGH 7.8
CVE-2025-47405

Memory corruption when processing camera sensor input/output control codes with invalid output buffers.

Mitigation only
Fix from $1,950 2026-05-04
Fastconnect 6200 Firmware HIGH 7.5
CVE-2025-47401

Transient DOS when processing target power rate tables during channel configuration.

No fix yet
Fix from $1,950 2026-05-04
Snapdragon X65 5g Modem Rf Firmware HIGH 7.5
CVE-2025-47403

Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming.

Mitigation only
Fix from $1,950 2026-05-04
X2000086 Firmware MEDIUM 5.5
CVE-2025-47406

Information Disclosure while processing IOCTL handler callbacks without verifying buffer size.

Mitigation only
Fix from $1,600 2026-05-04
Cologne Firmware HIGH 7.8
CVE-2026-21382

Memory Corruption when handling power management requests with improperly sized input/output buffers.

No fix yet
Fix from $1,950 2026-04-06
Ar8035 Firmware HIGH 7.5
CVE-2026-21381

Transient DOS when receiving a service data frame with excessive length during device matching over a neighborhood awareness network protocol connect…

Mitigation only
Fix from $1,950 2026-04-06
Sm6250 Firmware HIGH 7.8
CVE-2026-21374

Memory Corruption when processing auxiliary sensor input/output control commands with insufficient buffer size validation.

Mitigation only
Fix from $1,950 2026-04-06
Wcn3988 Firmware HIGH 7.8
CVE-2026-21375

Memory Corruption when accessing an output buffer without validating its size during IOCTL processing.

Mitigation only
Fix from $1,950 2026-04-06
Aqt1000 Firmware HIGH 7.8
CVE-2026-21376

Memory Corruption when accessing an output buffer without validating its size during IOCTL processing in a camera sensor driver.

Mitigation only
Fix from $1,950 2026-04-06
Wcd9375 Firmware HIGH 7.8
CVE-2026-21378

Memory Corruption when accessing an output buffer without validating its size during IOCTL processing in a camera sensor driver.

Mitigation only
Fix from $1,950 2026-04-06
Cologne Firmware HIGH 7.8
CVE-2026-21380

Memory Corruption when using deprecated DMABUF IOCTL calls to manage video memory.

No fix yet
Fix from $1,950 2026-04-06
Snapdragon 8cx Compute Platform \"poipu Pro\" Firmware HIGH 7.8
CVE-2026-21371

Memory Corruption when retrieving output buffer with insufficient size validation.

Mitigation only
Fix from $1,950 2026-04-06
X2000094 Firmware HIGH 7.8
CVE-2026-21372

Memory Corruption when sending IOCTL requests with invalid buffer sizes during memcpy operations.

Mitigation only
Fix from $1,950 2026-04-06
Aqt1000 Firmware HIGH 7.8
CVE-2026-21373

Memory Corruption when accessing an output buffer without validating its size during IOCTL processing.

Mitigation only
Fix from $1,950 2026-04-06
Ar8035 Firmware HIGH 7.5
CVE-2026-21367

Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes during initial scans.

Mitigation only
Fix from $1,950 2026-04-06
5g Fixed Wireless Access Platform Firmware HIGH 8.8
CVE-2025-47392

Memory corruption when decoding corrupted satellite data files with invalid signature offsets.

Mitigation only
Fix from $1,950 2026-04-06
Pandeiro Firmware HIGH 7.1
CVE-2025-47400

Cryptographic issue while copying data to a destination buffer without validating its size.

No fix yet
Fix from $1,950 2026-04-06
Ar8035 Firmware HIGH 7.8
CVE-2025-47389

Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation.

Mitigation only
Fix from $1,950 2026-04-06
Qcm5430 Firmware HIGH 7.8
CVE-2025-47390

Memory corruption while preprocessing IOCTL request in JPEG driver.

Mitigation only
Fix from $1,950 2026-04-06
Cologne Firmware HIGH 7.8
CVE-2025-59603

Memory Corruption when processing invalid user address with nonstandard buffer address.

No fix yet
Fix from $1,950 2026-03-02
Sa8295p Firmware HIGH 7.8
CVE-2025-47385

Memory Corruption when accessing trusted execution environment without proper privilege check.

No fix yet
Fix from $1,950 2026-03-02
5g Fixed Wireless Access Platform Firmware HIGH 7.2
CVE-2025-47383

Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.

No fix yet
Fix from $1,950 2026-03-02
5g Fixed Wireless Access Platform Firmware MEDIUM 6.5
CVE-2025-47384

Transient DOS when MAC configures config id greater than supported maximum value.

No fix yet
Fix from $1,600 2026-03-02
Cologne Firmware HIGH 7.1
CVE-2025-47378

Cryptographic Issue when a shared VM reference allows HLOS to boot loader and access cert chain.

No fix yet
Fix from $1,950 2026-03-02
Fastconnect 7800 Firmware HIGH 7.8
CVE-2025-47373

Memory Corruption when accessing buffers with invalid length during TA invocation.

No fix yet
Fix from $1,950 2026-03-02
5g Fixed Wireless Access Platform Firmware MEDIUM 6.5
CVE-2025-47371

Transient DOS when an LTE RLC packet with invalid TB is received by UE.

Mitigation only
Fix from $1,600 2026-03-02
Ar8035 Firmware HIGH 7.8
CVE-2025-47366

Cryptographic issue when a Trusted Zone with outdated code is triggered by a HLOS providing incorrect input.

No fix yet
Fix from $1,950 2026-02-02
Cologne Firmware HIGH 7.8
CVE-2025-47399

Memory Corruption while processing IOCTL call to update sensor property settings with invalid input parameters.

Mitigation only
Fix from $1,950 2026-02-02
Sa8620p Firmware MEDIUM 6.5
CVE-2025-47402

Transient DOS when processing a received frame with an excessively large authentication information element.

No fix yet
Fix from $1,600 2026-02-02