Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Snapdragon — Vulnerabilities & Security Advisories 962

All 962 CVE vulnerabilities found in Snapdragon, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) associated with Qualcomm’s Snapdragon product line and its related components. It serves as a centralized reference for security researchers and engineers to understand the historical and current security posture of these mobile and embedded processing platforms. The content compiles a comprehensive collection of vulnerabilities affecting Snapdragon SoCs, including issues in the Adreno graphics drivers, Hexagon DSPs, Modem processors, and the TrustZone-based security ecosystem. The data covers the time range from the early release of the Snapdragon series up to the most recent firmware and driver updates. By organizing these entries by weakness type and specific subsystem, the page provides a structured view of how different coding errors, configuration missteps, and architectural limitations have manifested over time within this widely deployed hardware family. Here, readers can track Qualcomm’s advisory patterns to see how quickly and effectively the vendor responds to discovered flaws. Users can gain a deeper understanding of specific weakness classes, such as buffer overflows or race conditions, as they apply to mobile chipset architectures. Additionally, this resource allows for the lookup of a product’s vulnerability history, enabling stakeholders to assess the long-term security maintenance and patch lifecycle of individual Snapdragon generations. This information supports informed decision-making for device manufacturers, system integrators, and security auditors who need to evaluate the risk profile of Snapdragon-based devices in various deployment scenarios.

Vendor: Qualcomm, Inc.

CVE IDTitleCVSSSeverityPublished
CVE-2023-33099 Improper Input Validation in Multi-Mode Call Processor CWE-20 7.5 High2024-04-01
CVE-2023-33023 Buffer Copy without Checking Size of Input (`Classic Buffer Overflow`) in SPS-Applications CWE-120 8.4 High2024-04-01
CVE-2023-28547 Buffer Copy Without Checking Size of Input in SPS Applications CWE-120 8.4 High2024-04-01
CVE-2023-43553 Use of Out-of-range Pointer Offset in WLAN HOST CWE-823 9.8 Critical2024-03-04
CVE-2023-43552 Use After Free in WLAN Host Communication CWE-416 9.8 Critical2024-03-04
CVE-2023-43550 Integer Overflow or Wraparound in Core Services CWE-190 7.8 High2024-03-04
CVE-2023-43549 Stack-based Buffer Overflow in WLAN HAL CWE-121 8.4 High2024-03-04
CVE-2023-43548 Buffer Copy Without Checking Size of Input in Video CWE-120 7.3 High2024-03-04
CVE-2023-43547 Use After Free in Automotive Multimedia CWE-416 8.4 High2024-03-04
CVE-2023-43546 Use After Free in Automotive Multimedia CWE-416 8.4 High2024-03-04
CVE-2023-43541 NULL Pointer Dereference in Windows Graphics CWE-476 8.4 High2024-03-04
CVE-2023-43540 Buffer Copy Without Checking Size of Input in Bluetooth HOST CWE-120 8.4 High2024-03-04
CVE-2023-43539 Buffer Over-read in WLAN Firmware CWE-126 7.5 High2024-03-04
CVE-2023-33105 Configuration Issue in WLAN Host and Firmware CWE-16 7.5 High2024-03-04
CVE-2023-33104 Improper input Validation in Multi-Mode Call Processor CWE-20 7.5 High2024-03-04
CVE-2023-33103 Improper Input Validation in Multi-Mode Call Processor CWE-20 7.5 High2024-03-04
CVE-2023-33096 Reachable Assertion in Multi-Mode Call Processor CWE-617 7.5 High2024-03-04
CVE-2023-33095 Reachable Assertion in Multi-Mode Call Processor CWE-617 7.5 High2024-03-04
CVE-2023-33090 Buffer Over-read in Audio CWE-126 5.5 Medium2024-03-04
CVE-2023-33086 Improper Release of Memory Before Removing Last Reference in Data Modem CWE-401 7.5 High2024-03-04
CVE-2023-33084 Improper Release of Memory Before Removing Last Reference in Data Modem CWE-401 7.5 High2024-03-04
CVE-2023-33078 Buffer Over-read in DSP Services CWE-126 5.1 Medium2024-03-04
CVE-2023-33066 Use of Out-of-range Pointer Offset in Audio CWE-823 8.4 High2024-03-04
CVE-2023-28582 Buffer Copy Without Checking Size of Input in Data Modem CWE-120 9.8 Critical2024-03-04
CVE-2023-28578 Improper Input Validation in Services CWE-20 9.3 Critical2024-03-04
CVE-2023-43536 Buffer Over-read in WLAN Firmware CWE-126 7.5 High2024-02-06
CVE-2023-43535 Improper Validation of Array Index in Display CWE-129 8.4 High2024-02-06
CVE-2023-43534 Use of Out-of-range Pointer Offset in WLAN HOST CWE-823 8.6 High2024-02-06
CVE-2023-43533 Buffer Over-read in WLAN Firmware CWE-126 7.5 High2024-02-06
CVE-2023-43532 Untrusted Pointer Dereference in Display CWE-822 8.4 High2024-02-06

All 962 known CVE vulnerabilities affecting Snapdragon with full Chinese analysis, references, and POCs where available.