Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Snapdragon — Vulnerabilities & Security Advisories 951

All 951 CVE vulnerabilities found in Snapdragon, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) associated with Qualcomm’s Snapdragon product line and its related components. It serves as a centralized reference for security researchers and engineers to understand the historical and current security posture of these mobile and embedded processing platforms. The content compiles a comprehensive collection of vulnerabilities affecting Snapdragon SoCs, including issues in the Adreno graphics drivers, Hexagon DSPs, Modem processors, and the TrustZone-based security ecosystem. The data covers the time range from the early release of the Snapdragon series up to the most recent firmware and driver updates. By organizing these entries by weakness type and specific subsystem, the page provides a structured view of how different coding errors, configuration missteps, and architectural limitations have manifested over time within this widely deployed hardware family. Here, readers can track Qualcomm’s advisory patterns to see how quickly and effectively the vendor responds to discovered flaws. Users can gain a deeper understanding of specific weakness classes, such as buffer overflows or race conditions, as they apply to mobile chipset architectures. Additionally, this resource allows for the lookup of a product’s vulnerability history, enabling stakeholders to assess the long-term security maintenance and patch lifecycle of individual Snapdragon generations. This information supports informed decision-making for device manufacturers, system integrators, and security auditors who need to evaluate the risk profile of Snapdragon-based devices in various deployment scenarios.

Vendor: Qualcomm, Inc.

CVE IDTitleCVSSSeverityPublished
CVE-2025-21454 Buffer Over-read in WLAN Embedded SW CWE-126 7.5 High2025-07-08
CVE-2025-21450 Improper Authentication in GPS_GNSS CWE-287 9.1 Critical2025-07-08
CVE-2025-21449 Buffer Over-read in WLAN Embedded SW CWE-126 7.5 High2025-07-08
CVE-2025-21446 Buffer Over-read in WLAN Firmware CWE-126 7.5 High2025-07-08
CVE-2025-21445 Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Data HLOS - QX CWE-120 7.8 High2025-07-08
CVE-2025-21444 Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Data HLOS - QX CWE-120 7.8 High2025-07-08
CVE-2025-21433 NULL Pointer Dereference in SPS-HLOS CWE-476 6.2 Medium2025-07-08
CVE-2025-21432 Double Free in SPS-HLOS CWE-415 7.8 High2025-07-08
CVE-2025-21427 Buffer Over-read in Data HLOS - LNX CWE-126 8.2 High2025-07-08
CVE-2025-21426 Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Camera_Linux CWE-120 6.6 Medium2025-07-08
CVE-2025-21422 Cryptographic Issues in Automotive CWE-310 7.1 High2025-07-08
CVE-2024-53009 Improper Validation of Array Index in Automotive Autonomy CWE-129 5.3 Medium2025-07-08
CVE-2025-21479 Incorrect Authorization in Graphics CWE-863 8.6 High2025-06-03
CVE-2025-27038 Use After Free in Graphics CWE-416 7.5 High2025-06-03
CVE-2025-27031 Use After Free in Bluetooth HOST CWE-416 7.8 High2025-06-03
CVE-2025-27029 Buffer Over-read in WLAN HAL CWE-126 7.5 High2025-06-03
CVE-2025-21486 Untrusted Pointer Dereference in DSP Service CWE-822 7.8 High2025-06-03
CVE-2025-21485 Time-of-check Time-of-use (TOCTOU) Race Condition in DSP Service CWE-367 7.8 High2025-06-03
CVE-2025-21480 Incorrect Authorization in Graphics Windows CWE-863 8.6 High2025-06-03
CVE-2025-21463 Buffer Over-read in WLAN Host Communication CWE-126 7.5 High2025-06-03
CVE-2024-53026 Buffer Over-read in Data Network Stack & Connectivity CWE-126 8.2 High2025-06-03
CVE-2024-53021 Buffer Over-read in Data Network Stack & Connectivity CWE-126 8.2 High2025-06-03
CVE-2024-53020 Buffer Over-read in Data Network Stack & Connectivity CWE-126 8.2 High2025-06-03
CVE-2024-53019 Buffer Over-read in Data Network Stack & Connectivity CWE-126 8.2 High2025-06-03
CVE-2024-53018 Time-of-check Time-of-use (TOCTOU) Race Condition in Camera Driver CWE-367 6.6 Medium2025-06-03
CVE-2024-53017 Use of Out-of-range Pointer Offset in Camera Driver CWE-823 6.6 Medium2025-06-03
CVE-2024-53016 Time-of-check Time-of-use (TOCTOU) Race Condition in Camera Driver CWE-367 6.6 Medium2025-06-03
CVE-2024-53015 Use After Free in Computer Vision CWE-416 6.6 Medium2025-06-03
CVE-2024-53013 Buffer Copy Without Checking Size of Input in Audio CWE-120 6.6 Medium2025-06-03
CVE-2024-53010 Improper Access Control in Core CWE-284 7.8 High2025-06-03

All 951 known CVE vulnerabilities affecting Snapdragon with full Chinese analysis, references, and POCs where available.