cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-25677,https://securityvulnerability.io/vulnerability/CVE-2022-25677,Memory Corruption Vulnerability in Qualcomm Snapdragon Products,"A memory corruption issue exists within Qualcomm's Snapdragon product line due to improper handling of memory during the processing of DCI packets. This type of vulnerability arises from a use-after-free scenario, where memory that has already been released is accessed again, potentially leading to arbitrary code execution or system instability. Affected systems include a broad range of Snapdragon platforms, which are widely utilized in automotive, industrial, mobile, consumer IoT, and networking applications. Prompt attention to this vulnerability is essential for maintaining system integrity and security.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",6.7,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-12-13T00:00:00.000Z,0 CVE-2022-33238,https://securityvulnerability.io/vulnerability/CVE-2022-33238,Denial of Service Vulnerability in Snapdragon Products by Qualcomm,"A transient denial of service vulnerability is present in Qualcomm's Snapdragon products due to a loop with an unreachable exit condition when processing incoming FTM frames. This issue can lead to significant disruptions, impacting device functionality across various Snapdragon platforms including automotive, consumer electronics, and IoT applications.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Iot, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",7.5,HIGH,0.0008900000248104334,false,,false,false,false,,,false,false,,2022-12-13T00:00:00.000Z,0 CVE-2022-33235,https://securityvulnerability.io/vulnerability/CVE-2022-33235,Buffer Over-Read Vulnerability in Qualcomm Snapdragon Products,"A vulnerability has been identified in various Qualcomm Snapdragon products, stemming from a buffer over-read issue within the WLAN firmware. This flaw arises while parsing security context information attributes, potentially allowing unauthorized parties access to sensitive information. The affected Snapdragon series includes a wide array of applications, from consumer electronics to connectivity solutions, posing significant risks across multiple devices and environments.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",8.2,HIGH,0.0012700000079348683,false,,false,false,false,,,false,false,,2022-12-13T00:00:00.000Z,0 CVE-2022-33236,https://securityvulnerability.io/vulnerability/CVE-2022-33236,Buffer Over-read Vulnerability in Snapdragon WLAN Firmware,"A buffer over-read vulnerability exists in the WLAN firmware used in several Snapdragon products. This issue arises when the firmware improperly parses cipher suite info attributes, potentially leading to a transient denial-of-service condition. Affected devices include Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile, and Snapdragon Wired Infrastructure and Networking. Users and organizations utilizing these products should be aware of the potential impacts and apply relevant security updates as they become available.",Qualcomm,"Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure And Networking",7.5,HIGH,0.000859999970998615,false,,false,false,false,,,false,false,,2022-11-15T00:00:00.000Z,0 CVE-2022-33239,https://securityvulnerability.io/vulnerability/CVE-2022-33239,Transient Denial of Service Vulnerability in Snapdragon Firmware,"A vulnerable condition exists within the WLAN firmware of Snapdragon products, where a loop with an unreachable exit condition occurs during the parsing of the IPv6 extension header. This vulnerability can lead to a transient denial of service, potentially impacting device functionality and network connectivity across various Snapdragon platforms.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",7.5,HIGH,0.000859999970998615,false,,false,false,false,,,false,false,,2022-11-15T00:00:00.000Z,0 CVE-2022-33237,https://securityvulnerability.io/vulnerability/CVE-2022-33237,Buffer Over-read Vulnerability in Qualcomm Snapdragon Products,"This vulnerability arises from a buffer over-read in the WLAN firmware while processing the PPE threshold, impacting various Qualcomm Snapdragon products including automotive and mobile solutions. Attackers exploiting this weakness could potentially cause transient denial-of-service situations, disrupting the normal operation of affected devices.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",7.5,HIGH,0.0008900000248104334,false,,false,false,false,,,false,false,,2022-11-15T00:00:00.000Z,0 CVE-2022-25667,https://securityvulnerability.io/vulnerability/CVE-2022-25667,Information Disclosure in Snapdragon Wired Infrastructure and Networking,"An information disclosure vulnerability exists due to the improper handling of ICMP requests within Qualcomm's Snapdragon Wired Infrastructure and Networking products. This flaw can potentially expose sensitive system information, making it critical for users of affected devices to apply relevant updates and security patches to mitigate risks.",Qualcomm,Snapdragon Wired Infrastructure And Networking,7.5,HIGH,0.0009899999713525176,false,,false,false,false,,,false,false,,2022-11-15T00:00:00.000Z,0 CVE-2022-25718,https://securityvulnerability.io/vulnerability/CVE-2022-25718,Cryptographic Flaw in Qualcomm Snapdragon Products,"This vulnerability in Qualcomm's Snapdragon family of products stems from an improper validation of return values during the authentication handshake process within WLAN. As a result, potential exploitation could lead to various security concerns affecting the integrity and confidentiality of data transmitted over wireless networks. It is crucial for users and administrators of the affected Snapdragon devices to apply the recommended patches and updates to mitigate any risks associated with this vulnerability.",Qualcomm,"Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Iot, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",9.1,CRITICAL,0.0017099999822676182,false,,false,false,false,,,false,false,,2022-10-19T00:00:00.000Z,0 CVE-2022-25666,https://securityvulnerability.io/vulnerability/CVE-2022-25666,Memory Corruption in Qualcomm Snapdragon Products,"A memory corruption vulnerability exists in Qualcomm's Snapdragon products due to a use-after-free error. This issue arises when multiple threads attempt to access shared resources, leading to potential exploitation. The affected products include a range of Snapdragon variants utilized in automotive, computing, consumer IoT, industrial IoT, mobile, wearable, and networking applications, making timely security patches essential for mitigating the risks associated with this vulnerability.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",6.7,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-10-19T00:00:00.000Z,0 CVE-2022-25749,https://securityvulnerability.io/vulnerability/CVE-2022-25749,Buffer Over-Read Vulnerability in Qualcomm Snapdragon Products,"A transient denial-of-service vulnerability occurs in the Qualcomm Snapdragon product line due to a buffer over-read when processing MDNS frames. This flaw can potentially disrupt service, affecting multiple Snapdragon applications across various sectors, including automotive, mobile, and IoT devices. Proper patches and system updates are crucial for mitigating this risk.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Iot, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",7.5,HIGH,0.000859999970998615,false,,false,false,false,,,false,false,,2022-10-19T00:00:00.000Z,0 CVE-2022-25748,https://securityvulnerability.io/vulnerability/CVE-2022-25748,Memory Corruption Vulnerability in Snapdragon Products by Qualcomm,"A vulnerability exists in Qualcomm's Snapdragon product line, stemming from memory corruption triggered by an integer overflow during the processing of GTK frames. This flaw affects a wide range of Snapdragon variants, including those utilized in automotive, connectivity, consumer electronics, IoT, and mobile applications. Exploiting this vulnerability may enable attackers to execute malicious code or disrupt system operations, underscoring the importance of timely updates and security measures.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Iot, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",9.8,CRITICAL,0.0018899999558925629,false,,false,false,false,,,false,false,,2022-10-19T00:00:00.000Z,0 CVE-2022-25736,https://securityvulnerability.io/vulnerability/CVE-2022-25736,Denial of Service Vulnerability in Qualcomm Snapdragon Products,"A denial of service vulnerability exists in Qualcomm Snapdragon products due to an out-of-bound read that occurs while processing VHT action frames. This vulnerability affects numerous Snapdragon platforms, potentially allowing unauthorized users to disrupt the service of connected devices. Readers are advised to review the specific product bulletins and update their systems promptly to mitigate associated risks.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",7.5,HIGH,0.0008900000248104334,false,,false,false,false,,,false,false,,2022-10-19T00:00:00.000Z,0 CVE-2022-25719,https://securityvulnerability.io/vulnerability/CVE-2022-25719,Information Disclosure in Snapdragon Products by Qualcomm,"This vulnerability allows unauthorized parties to gain access to sensitive information over WLAN connections due to improper length checks during the authentication handshake in various Snapdragon products. Affected devices span multiple applications, including automotive, consumer electronics, IoT, and mobile communication, highlighting the broad implications for safety and privacy. Users and manufacturers are advised to implement patches provided by Qualcomm to mitigate potential risks associated with this flaw.",Qualcomm,"Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Iot, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",8.2,HIGH,0.0015800000401213765,false,,false,false,false,,,false,false,,2022-10-19T00:00:00.000Z,0 CVE-2022-25652,https://securityvulnerability.io/vulnerability/CVE-2022-25652,Cryptographic Vulnerability in Snapdragon Wired Infrastructure and Networking by Qualcomm,"This vulnerability arises from improper hash verification within Snapdragon's Wired Infrastructure and Networking solution. It compromises the integrity of cryptographic operations, potentially allowing attackers to exploit weaknesses in data verification processes. This can lead to unauthorized access or manipulation of sensitive information during data transmission, making it essential for users to implement protective measures and stay informed about security updates.",Qualcomm,Snapdragon Wired Infrastructure And Networking,9,CRITICAL,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-09-16T05:25:51.000Z,0 CVE-2022-22062,https://securityvulnerability.io/vulnerability/CVE-2022-22062,Out-of-Bounds Read in Snapdragon Products from Qualcomm,"An out-of-bounds read vulnerability arises when improperly checking the length of data while parsing a server certificate in various Snapdragon products. This flaw affects a wide range of devices, including automotive systems, mobile devices, and consumer electronics, potentially allowing an attacker to read sensitive information beyond the allowed memory boundaries. By exploiting this vulnerability, an attacker could gain unauthorized access to critical data, impacting both user privacy and device integrity.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Iot, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",8.2,HIGH,0.001339999958872795,false,,false,false,false,,,false,false,,2022-09-02T11:31:05.000Z,0 CVE-2021-35129,https://securityvulnerability.io/vulnerability/CVE-2021-35129,Memory Corruption Vulnerability in Snapdragon Products by Qualcomm,"This vulnerability involves memory corruption in Qualcomm's Snapdragon range due to improper length checks when processing vendor-specific commands. This issue can potentially allow an attacker to manipulate device functionality, leading to unexpected behavior in products such as Snapdragon Compute, Snapdragon Connectivity, and others in the Snapdragon ecosystem.",Qualcomm,"Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Wired Infrastructure And Networking",7.8,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-06-14T10:11:28.000Z,0 CVE-2021-35104,https://securityvulnerability.io/vulnerability/CVE-2021-35104,Buffer Overflow Vulnerability in Snapdragon Products by Qualcomm,"A buffer overflow vulnerability has been identified in Qualcomm's Snapdragon products that arises from improper parsing of headers during the playback of FLAC audio clips. This exposure can lead to potential security issues, emphasizing the need for prompt remediation to maintain system integrity across various Snapdragon use cases, from automotive to industrial IoT applications.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",9.8,CRITICAL,0.0019199999514967203,false,,false,false,false,,,false,false,,2022-06-14T10:11:22.000Z,0 CVE-2021-35071,https://securityvulnerability.io/vulnerability/CVE-2021-35071,Buffer Over Read Vulnerability in Snapdragon Products by Qualcomm,"This vulnerability stems from inadequate size validation when transferring data, which can lead to a buffer over read condition. Malicious actors could exploit this flaw in various Snapdragon products, potentially resulting in a Denial of Service. Whether in automotive applications or mobile devices, this vulnerability emphasizes the importance of robust validation checks to maintain system integrity and performance.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",5.5,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-06-14T10:11:14.000Z,0 CVE-2021-30349,https://securityvulnerability.io/vulnerability/CVE-2021-30349,Memory Corruption Vulnerability in Qualcomm Snapdragon Products,"A vulnerability exists in Qualcomm's Snapdragon products due to improper access control sequence following memory allocation. This flaw can potentially lead to memory corruption across a variety of devices, including those used in automotive, connectivity, and Internet of Things applications.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",8.2,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-06-14T10:11:09.000Z,0 CVE-2021-30346,https://securityvulnerability.io/vulnerability/CVE-2021-30346,Improper SMMU Configuration in Qualcomm Snapdragon Products,"A vulnerability exists in Qualcomm's Snapdragon products where improper configuration of the System Memory Management Unit (SMMU) allows unauthorized access to secure resources. This flaw could lead to potential exploitation in Snapdragon Industrial IOT, Mobile, Wearable, and Wired Infrastructure and Networking devices, highlighting the need for vigilance in securing IoT and mobile environments.",Qualcomm,"Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",6.5,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-06-14T10:11:06.000Z,0 CVE-2021-30345,https://securityvulnerability.io/vulnerability/CVE-2021-30345,Improper SMMU Configuration in Qualcomm Snapdragon Products,"The configuration issue within the SMMU (System Memory Management Unit) in various Qualcomm Snapdragon products allows unauthorized access to secure resources. This vulnerability exposes devices to potential exploitation, where attackers could gain access to sensitive data or control over system functions, underscoring the need for swift remediation to ensure security.",Qualcomm,"Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",6.5,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-06-14T10:11:04.000Z,0 CVE-2021-30339,https://securityvulnerability.io/vulnerability/CVE-2021-30339,Improper Key Generation in Qualcomm Snapdragon Products,"A vulnerability exists in Qualcomm Snapdragon products where reading Pseudorandom Number Generator (PRNG) output may lead to improper key generation. This issue arises from the lack of buffer validation, potentially compromising the security of the products. Affected devices include Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, and Snapdragon Wired Infrastructure and Networking.",Qualcomm,"Snapdragon Connectivity, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",9,CRITICAL,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-06-14T10:10:55.000Z,0 CVE-2021-30281,https://securityvulnerability.io/vulnerability/CVE-2021-30281,Unauthorized Access Vulnerability in Qualcomm Snapdragon Products,"This vulnerability pertains to Qualcomm's Snapdragon products, where improper checks during device configuration flashing may permit unauthorized access to secure areas. This flaw could enable attackers to exploit the affected systems, leading to significant security implications across various Snapdragon categories, including automotive, connectivity, and IoT. Users are urged to review the security measures and apply necessary updates as outlined by Qualcomm.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",8.4,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-06-14T10:10:48.000Z,0 CVE-2021-35103,https://securityvulnerability.io/vulnerability/CVE-2021-35103,Out-of-Bound Write Vulnerability Affecting Qualcomm Snapdragon Products,"This vulnerability involves a potential out-of-bound write caused by inadequate validation of timer values received from firmware during the syncing process in various Snapdragon products. This shortcoming can lead to unpredictable behaviors, making it crucial for users and developers to be aware of updated patches and mitigation strategies to enhance security.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",7.8,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-04-01T04:40:38.000Z,0 CVE-2021-35088,https://securityvulnerability.io/vulnerability/CVE-2021-35088,Out of Bound Read Vulnerability in Snapdragon Products by Qualcomm,"The vulnerability arises from improper validation of Information Element (IE) length during the parsing of SSID IEs when the channel is in Dynamic Frequency Selection (DFS) mode. This flaw could allow unauthorized access to sensitive data, posing a significant risk across various Snapdragon platforms including automotive, consumer IoT, industrial IoT, mobile, wearables, and wired infrastructure. It is essential for users of affected Snapdragon products to apply necessary patches and monitor for any related security advisories.",Qualcomm,"Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Iot, Snapdragon Industrial Iot, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure And Networking",8.2,HIGH,0.002460000105202198,false,,false,false,false,,,false,false,,2022-04-01T04:40:36.000Z,0