Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Snapdragon — Vulnerabilities & Security Advisories 962

All 962 CVE vulnerabilities found in Snapdragon, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) associated with Qualcomm’s Snapdragon product line and its related components. It serves as a centralized reference for security researchers and engineers to understand the historical and current security posture of these mobile and embedded processing platforms. The content compiles a comprehensive collection of vulnerabilities affecting Snapdragon SoCs, including issues in the Adreno graphics drivers, Hexagon DSPs, Modem processors, and the TrustZone-based security ecosystem. The data covers the time range from the early release of the Snapdragon series up to the most recent firmware and driver updates. By organizing these entries by weakness type and specific subsystem, the page provides a structured view of how different coding errors, configuration missteps, and architectural limitations have manifested over time within this widely deployed hardware family. Here, readers can track Qualcomm’s advisory patterns to see how quickly and effectively the vendor responds to discovered flaws. Users can gain a deeper understanding of specific weakness classes, such as buffer overflows or race conditions, as they apply to mobile chipset architectures. Additionally, this resource allows for the lookup of a product’s vulnerability history, enabling stakeholders to assess the long-term security maintenance and patch lifecycle of individual Snapdragon generations. This information supports informed decision-making for device manufacturers, system integrators, and security auditors who need to evaluate the risk profile of Snapdragon-based devices in various deployment scenarios.

Vendor: Qualcomm, Inc.

CVE IDTitleCVSSSeverityPublished
CVE-2023-33071 Improper Access Control in Automotive OS Platform Android CWE-284 8.4 High2023-12-05
CVE-2023-33070 Improper Authentication in Automotive OS CWE-287 7.1 High2023-12-05
CVE-2023-33063 Use After Free in DSP Services CWE-416 7.8 High2023-12-05
CVE-2023-33054 Improper Authentication in GPS HLOS Driver CWE-287 9.1 Critical2023-12-05
CVE-2023-33053 Improper Validation of Array Index in Kernel CWE-129 8.4 High2023-12-05
CVE-2023-33044 Reachable Assertion in Data Modem CWE-617 7.5 High2023-12-05
CVE-2023-33043 Reachable Assertion in Modem CWE-617 7.5 High2023-12-05
CVE-2023-33042 Improper Input Validation in Modem CWE-20 7.5 High2023-12-05
CVE-2023-33041 Reachable assertion in WLAN Firmware CWE-617 7.5 High2023-12-05
CVE-2023-33024 Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Radio Interface Layer CWE-120 6.7 Medium2023-12-05
CVE-2023-33022 Integer Overflow to Buffer Overflow in HLOS CWE-680 8.4 High2023-12-05
CVE-2023-33018 Integer Overflow to Buffer Overflow in User Identity Module CWE-680 7.8 High2023-12-05
CVE-2023-33017 Buffer Copy Without Checking Size of Input in Boot CWE-120 7.8 High2023-12-05
CVE-2023-28588 Integer Overflow or Wraparound in Bluetooth Host CWE-190 7.5 High2023-12-05
CVE-2023-28587 Improper Restriction of Operations within the Bounds of a Memory Buffer in BT Controller CWE-119 7.8 High2023-12-05
CVE-2023-28586 Improper Restriction of Operation within the Bounds of a Memory Buffer in TZ Secure OS CWE-119 6.0 Medium2023-12-05
CVE-2023-28585 Integer Overflow to Buffer Overflow in TZ Secure OS CWE-680 8.2 High2023-12-05
CVE-2023-28580 Buffer Copy Without Checking Size of Input in WLAN Host CWE-120 6.7 Medium2023-12-05
CVE-2023-28579 Buffer Copy Without Checking Size of Input in WLAN Host CWE-120 6.7 Medium2023-12-05
CVE-2023-28551 Improper Restriction of Operations within the Bounds of a Memory Buffer in UTILS CWE-119 7.8 High2023-12-05
CVE-2023-28550 Improper Restriction of Operations within the Bounds of a Memory Buffer in MPP Performance CWE-119 7.8 High2023-12-05
CVE-2023-28546 Buffer Copy Without Checking Size of Input in SPS Applications CWE-120 7.8 High2023-12-05
CVE-2023-22668 Use After Free in Audio CWE-416 6.7 Medium2023-12-05
CVE-2023-22383 Use After Free in Camera CWE-416 6.7 Medium2023-12-05
CVE-2023-21634 Improper Restriction of Operations within the Bounds of a Memory Buffer in Radio Interface Layer CWE-119 6.7 Medium2023-12-05
CVE-2023-33074 Use After Free in Audio CWE-416 8.4 High2023-11-07
CVE-2023-33061 Buffer Over-read in WLAN Firmware CWE-126 7.5 High2023-11-07
CVE-2023-33059 Buffer Copy Without Checking Size of Input in Audio CWE-191 7.8 High2023-11-07
CVE-2023-33056 NULL Pointer dereference in WLAN Firmware CWE-476 7.5 High2023-11-07
CVE-2023-33055 Buffer Copy Without Checking Size of Input in Audio CWE-120 7.8 High2023-11-07

All 962 known CVE vulnerabilities affecting Snapdragon with full Chinese analysis, references, and POCs where available.