This page lists publicly disclosed CVE vulnerabilities affecting qualcomm 215_firmware (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2025-21424 | Memory corruption while calling the NPU driver APIs concurrently. | [email protected] | 7.8 | 0.11% | 2025-03-03 | 2026-06-17 |
| CVE-2024-53014 | Memory corruption may occur while validating ports and channels in Audio driver. | [email protected] | 7.8 | 0.11% | 2025-03-03 | 2026-06-17 |
| CVE-2024-38426 | While processing the authentication message in UE, improper authentication may lead to information disclosure. | [email protected] | 5.4 | 0.25% | 2025-03-03 | 2026-06-17 |
| CVE-2018-11922 | Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user. | [email protected] | 9.8 | 0.17% | 2024-11-26 | 2026-06-16 |
| CVE-2024-33042 | Memory corruption when Alternative Frequency offset value is set to 255. | [email protected] | 7.8 | 0.13% | 2024-09-02 | 2026-06-17 |
| CVE-2023-33020 | Transient DOS in WLAN Host when an invalid channel (like channel out of range) is received in STA during CSA IE. | [email protected] | 7.5 | 0.30% | 2023-09-05 | 2026-06-17 |
| CVE-2023-33019 | Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel in CSA IE. | [email protected] | 7.5 | 0.30% | 2023-09-05 | 2026-06-17 |
| CVE-2023-28575 | The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it. | [email protected] | 6.7 | 0.12% | 2023-08-08 | 2026-06-17 |
| CVE-2023-24854 | Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message. | [email protected] | 7.8 | 0.05% | 2023-07-04 | 2026-06-17 |
| CVE-2023-22667 | Memory Corruption in Audio while allocating the ion buffer during the music playback. | [email protected] | 8.4 | 0.05% | 2023-07-04 | 2026-06-17 |
| CVE-2023-22387 | Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption. | [email protected] | 7.8 | 0.05% | 2023-07-04 | 2026-06-17 |
| CVE-2023-22386 | Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory. | [email protected] | 7.8 | 0.05% | 2023-07-04 | 2026-06-17 |
| CVE-2023-21631 | Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network. | [email protected] | 7.5 | 0.31% | 2023-07-04 | 2026-06-17 |
| CVE-2023-21629 | Memory Corruption in Modem due to double free while parsing the PKCS15 sim files. | [email protected] | 6.8 | 0.17% | 2023-07-04 | 2026-06-17 |
| CVE-2019-2248 | Buffer overflow can occur if invalid header tries to overwrite the existing buffer which fix size allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 63 | [email protected] | 7.8 | 0.20% | 2019-05-24 | 2026-06-16 |