Qualcomm Chipsets是美国高通(Qualcomm)公司的一系列芯片组。 Qualcomm Chipsets存在访问控制错误漏洞,该漏洞源于处理特定分区时存在加密问题,可能导致未经授权的写入访问加载自定义引导加载程序。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Qualcomm, Inc. | Snapdragon | XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Qualcomm, Inc. | Snapdragon | XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-25277 | 8.8 HIGH | Buffer Copy Without Checking Size of Input in Secure Processor |
| CVE-2026-25276 | 8.8 HIGH | Improper Validation of Array Index in Secure Processor |
| CVE-2025-59604 | 7.8 HIGH | NULL Pointer Dereference in SPS Applications |
| CVE-2026-25260 | 7.8 HIGH | Time-of-check Time-of-use (TOCTOU) Race Condition in DSP Service |
| CVE-2026-25259 | 7.8 HIGH | Out-of-bounds Write in DSP Service |
| CVE-2026-25258 | 7.8 HIGH | Out-of-bounds Read in DSP Service |
| CVE-2025-59606 | 7.8 HIGH | NULL Pointer Dereference in HLOS |
| CVE-2025-59605 | 7.8 HIGH | Out-of-bounds Write in HLOS |
| CVE-2026-24085 | 7.2 HIGH | Stack-based Buffer Overflow in Display |
| CVE-2026-24087 | 7.2 HIGH | Improper Validation of Syntactic Correctness of Input in Kernel |
| CVE-2026-24089 | 7.2 HIGH | Improper Validation of Syntactic Correctness of Input in Kernel |
| CVE-2026-24091 | 7.2 HIGH | Improper Validation of Syntactic Correctness of Input in Display |
| CVE-2026-24092 | 7.2 HIGH | Improper Validation of Syntactic Correctness of Input in Display |
| CVE-2026-24090 | 7.1 HIGH | Missing Authentication for Critical Function in HLOS |
| CVE-2025-59611 | 6.7 MEDIUM | Out-of-bounds Write in Core Services |
| CVE-2025-59612 | 6.7 MEDIUM | Stack-based Buffer Overflow in Windows Compute |
| CVE-2025-59613 | 6.7 MEDIUM | Stack-based Buffer Overflow in Windows Compute |
| CVE-2025-59614 | 6.7 MEDIUM | Out-of-bounds Write in Windows Compute |
| CVE-2025-59601 | 6.5 MEDIUM | Exposure of Sensitive Information Through Metadata in Powerline Communication Firmware |
| CVE-2025-59610 | 6.4 MEDIUM | Time-of-check Time-of-use (TOCTOU) Race Condition in Camera Driver |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet