Showing 11 vulnerabilities on this page for Multiple Chipsets

Signals CISA KEV Ransomware Nuclei
qualcomm vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Integer Overflow or Wraparound in Graphics

Memory corruption while using alignments for memory allocation.

CWE-190Mar 2, 2026
CVSS7.8v3.1EPSS1.07%PoCs1SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Incorrect Authorization in Graphics

Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.

CWE-863Jun 3, 2025
CVSS8.6v3.1EPSS0.778%PoCs4SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Use After Free in Graphics

Memory corruption while rendering graphics using Adreno GPU drivers in Chrome.

CWE-416Jun 3, 2025
CVSS7.5v3.1EPSS0.831%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Incorrect Authorization in Graphics Windows

Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.

CWE-863Jun 3, 2025
CVSS8.6v3.1EPSS0.435%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Use After Free in DSP Service

Memory corruption while maintaining memory maps of HLOS memory.

CWE-416Oct 7, 2024
CVSS7.8v3.1EPSS0.674%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Integer Overflow or Wraparound in Graphics Linux

Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

CWE-190Dec 5, 2023
CVSS8.4v3.1EPSS0.892%PoCs2SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Use of Out-of-range Pointer Offset in Graphics

Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.

CVSS8.4v3.1EPSS0.847%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Use After Free in DSP Services

Memory corruption in DSP Services during a remote call from HLOS to DSP.

CWE-416Dec 5, 2023
CVSS7.8v3.1EPSS0.7%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Qualcomm Multiple Chipsets Use-After-Free Vulnerability

Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music

CWE-416Jun 14, 2022
CVSS8.4v3.1EPSS0.455%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Qualcomm Multiple Chipsets Detection of Error Condition Without Action Vulnerability

Improper handling of address deregistration on failure can lead to new GPU address allocation failure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

CWE-390CWE-755May 7, 2021
CVSS6.2v3.1EPSS0.52%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Qualcomm Multiple Chipsets Use-After-Free Vulnerability

Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

CWE-416May 7, 2021
CVSS8.4v3.1EPSS1.15%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX