Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Snapdragon — Vulnerabilities & Security Advisories 962

All 962 CVE vulnerabilities found in Snapdragon, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) associated with Qualcomm’s Snapdragon product line and its related components. It serves as a centralized reference for security researchers and engineers to understand the historical and current security posture of these mobile and embedded processing platforms. The content compiles a comprehensive collection of vulnerabilities affecting Snapdragon SoCs, including issues in the Adreno graphics drivers, Hexagon DSPs, Modem processors, and the TrustZone-based security ecosystem. The data covers the time range from the early release of the Snapdragon series up to the most recent firmware and driver updates. By organizing these entries by weakness type and specific subsystem, the page provides a structured view of how different coding errors, configuration missteps, and architectural limitations have manifested over time within this widely deployed hardware family. Here, readers can track Qualcomm’s advisory patterns to see how quickly and effectively the vendor responds to discovered flaws. Users can gain a deeper understanding of specific weakness classes, such as buffer overflows or race conditions, as they apply to mobile chipset architectures. Additionally, this resource allows for the lookup of a product’s vulnerability history, enabling stakeholders to assess the long-term security maintenance and patch lifecycle of individual Snapdragon generations. This information supports informed decision-making for device manufacturers, system integrators, and security auditors who need to evaluate the risk profile of Snapdragon-based devices in various deployment scenarios.

Vendor: Qualcomm, Inc.

CVE IDTitleCVSSSeverityPublished
CVE-2023-43523 Reachable Assertion in WLAN Firmware CWE-617 7.5 High2024-02-06
CVE-2023-43522 NULL Pointer Dereference in WLAN Firmware CWE-476 7.5 High2024-02-06
CVE-2023-43520 Stack-based Buffer Overflow in WLAN HOST CWE-121 8.6 High2024-02-06
CVE-2023-43519 Buffer Copy without Checking Size of Input (`Classic Buffer Overflow`) in Video CWE-120 7.3 High2024-02-06
CVE-2023-43518 Untrusted Pointer Dereference in Video CWE-822 7.3 High2024-02-06
CVE-2023-43517 Improper Access Control in Automotive Multimedia CWE-284 8.4 High2024-02-06
CVE-2023-43516 Use of out-of-range pointer offset in Video CWE-823 7.8 High2024-02-06
CVE-2023-43513 Use of Out-of-range Pointer Offset in PCIe CWE-823 7.8 High2024-02-06
CVE-2023-33077 Buffer Copy Without Checking Size of Input in HLOS CWE-120 6.7 Medium2024-02-06
CVE-2023-33076 Configuration Issue in Core CWE-16 5.9 Medium2024-02-06
CVE-2023-33072 Buffer copy without checking size of Input in Core CWE-120 9.3 Critical2024-02-06
CVE-2023-33069 Buffer Copy Without Checking Size of Input in Audio CWE-120 6.7 Medium2024-02-06
CVE-2023-33068 Buffer Copy Without Checking Size of Input in Audio CWE-120 6.7 Medium2024-02-06
CVE-2023-33067 Use of Out-of-range Pointer Offset in Audio CWE-823 6.7 Medium2024-02-06
CVE-2023-33065 Buffer Over-read in Audio CWE-126 6.1 Medium2024-02-06
CVE-2023-33064 Buffer Over-read in Audio CWE-126 5.5 Medium2024-02-06
CVE-2023-33060 Buffer Over-read in Core CWE-126 7.1 High2024-02-06
CVE-2023-33058 Buffer Copy Without Checking Size of Input in Modem CWE-126 8.2 High2024-02-06
CVE-2023-33057 Improper Input Validation in Multi-Mode Call Processor CWE-20 7.5 High2024-02-06
CVE-2023-33049 Improper Release of Memory Before Removing Last Reference in Multi-Mode Call Processor CWE-401 7.5 High2024-02-06
CVE-2023-33046 Time-of-check Time-of-use (TOCTOU) Race Condition in Trusted Execution Environment CWE-367 7.8 High2024-02-06
CVE-2023-43514 Use After Free in DSP Services CWE-416 8.4 High2024-01-02
CVE-2023-43512 Buffer Over-read in Qualcomm ESL CWE-126 7.5 High2024-01-02
CVE-2023-43511 Loop with Unreachable Exit Condition (Infinite Loop) in WLAN Firmware CWE-835 7.5 High2024-01-02
CVE-2023-33120 Use After Free in Audio CWE-416 7.8 High2024-01-02
CVE-2023-33118 Use After Free in Automotive Audio CWE-416 7.8 High2024-01-02
CVE-2023-33117 Use After Free in Audio CWE-416 7.8 High2024-01-02
CVE-2023-33116 Buffer over-read without Checking Size of Input in WLAN Host CWE-126 7.5 High2024-01-02
CVE-2023-33114 Use after free in Neural Processing Unit CWE-416 8.4 High2024-01-02
CVE-2023-33113 Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Kernel CWE-120 8.4 High2024-01-02

All 962 known CVE vulnerabilities affecting Snapdragon with full Chinese analysis, references, and POCs where available.