Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Snapdragon — Vulnerabilities & Security Advisories 962

All 962 CVE vulnerabilities found in Snapdragon, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) associated with Qualcomm’s Snapdragon product line and its related components. It serves as a centralized reference for security researchers and engineers to understand the historical and current security posture of these mobile and embedded processing platforms. The content compiles a comprehensive collection of vulnerabilities affecting Snapdragon SoCs, including issues in the Adreno graphics drivers, Hexagon DSPs, Modem processors, and the TrustZone-based security ecosystem. The data covers the time range from the early release of the Snapdragon series up to the most recent firmware and driver updates. By organizing these entries by weakness type and specific subsystem, the page provides a structured view of how different coding errors, configuration missteps, and architectural limitations have manifested over time within this widely deployed hardware family. Here, readers can track Qualcomm’s advisory patterns to see how quickly and effectively the vendor responds to discovered flaws. Users can gain a deeper understanding of specific weakness classes, such as buffer overflows or race conditions, as they apply to mobile chipset architectures. Additionally, this resource allows for the lookup of a product’s vulnerability history, enabling stakeholders to assess the long-term security maintenance and patch lifecycle of individual Snapdragon generations. This information supports informed decision-making for device manufacturers, system integrators, and security auditors who need to evaluate the risk profile of Snapdragon-based devices in various deployment scenarios.

Vendor: Qualcomm, Inc.

CVE IDTitleCVSSSeverityPublished
CVE-2024-38421 Use After Free in Graphics Linux CWE-416 7.8 High2024-11-04
CVE-2024-38419 Use After Free in Automotive GPU CWE-416 7.8 High2024-11-04
CVE-2024-38415 Use After Free in Computer Vision CWE-416 7.8 High2024-11-04
CVE-2024-38410 Stack-based Buffer Overflow in WLAN Windows Host CWE-121 7.8 High2024-11-04
CVE-2024-38409 Buffer Copy Without Checking Size of Input in WLAN Windows Host CWE-120 7.8 High2024-11-04
CVE-2024-38408 Cryptographic Issues in BT Controller CWE-310 8.2 High2024-11-04
CVE-2024-38407 Time-of-check Time-of-use (TOCTOU) Race Condition in Camera CWE-367 7.8 High2024-11-04
CVE-2024-38406 Time-of-check Time-of-use (TOCTOU) Race Condition in Camera CWE-367 7.8 High2024-11-04
CVE-2024-38405 Buffer Over-read in WLAN Host CWE-126 7.5 High2024-11-04
CVE-2024-38403 Buffer Over-read in WLAN Firmware CWE-126 7.5 High2024-11-04
CVE-2024-33068 Use After Free in WLAN Host Communication CWE-416 7.5 High2024-11-04
CVE-2024-33033 Use After Free in ComputerVision CWE-416 6.7 Medium2024-11-04
CVE-2024-33032 Improper Validation of Array Index in Camera_Linux CWE-129 6.7 Medium2024-11-04
CVE-2024-33031 Improper Input Validation in RIL CWE-20 6.7 Medium2024-11-04
CVE-2024-33030 Buffer Copy without Checking Size of Input (`Classic Buffer Overflow`) in Performance CWE-120 6.7 Medium2024-11-04
CVE-2024-33029 Use After Free in DSP Services CWE-416 6.7 Medium2024-11-04
CVE-2024-23386 Improper Input Validation in Video CWE-20 6.7 Medium2024-11-04
CVE-2024-23385 Reachable Assertion in Modem CWE-617 7.5 High2024-11-04
CVE-2024-23377 Use of Out-of-range Pointer Offset in ComputerVision CWE-823 6.7 Medium2024-11-04
CVE-2024-43047 Use After Free in DSP Service CWE-416 7.8 High2024-10-07
CVE-2024-38425 Improper Authorization in Performance CWE-285 6.1 Medium2024-10-07
CVE-2024-38399 Use After Free in Graphics CWE-416 8.4 High2024-10-07
CVE-2024-38397 Buffer Over-read in WLAN Host Communication CWE-126 7.5 High2024-10-07
CVE-2024-33073 Buffer Over-read in WLAN Host Communication CWE-126 8.2 High2024-10-07
CVE-2024-33071 Buffer Over-read in WLAN Host Communication CWE-126 7.5 High2024-10-07
CVE-2024-33070 Buffer Over-read in WLAN Host Communication CWE-126 7.5 High2024-10-07
CVE-2024-33069 Use After Free in WLAN Host CWE-416 7.5 High2024-10-07
CVE-2024-33066 Improper Input Validation in WLAN Resource Manager CWE-20 9.8 Critical2024-10-07
CVE-2024-33065 Improper Input Validation in Camera CWE-20 8.4 High2024-10-07
CVE-2024-33064 Buffer Over-read in WLAN Host Communication CWE-126 8.2 High2024-10-07

All 962 known CVE vulnerabilities affecting Snapdragon with full Chinese analysis, references, and POCs where available.