|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 8, 2026, 6 p.m.
Update Date:May 9, 2026, 5:07 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 210921 | 8.8 |
HIGH
Local |
qualcomm |
ar7420_firmware ar9580_firmware csr8811_firmware ipq4018_firmware ipq4019_firmware ipq4028_firmware ipq4029_firmware qca10901_firmware qca4024_firmware qca7500_firmware … |
Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastructure and Networking |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2020-11258 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 210922 | 8.8 |
HIGH
Local |
qualcomm |
ar7420_firmware ar9580_firmware csr8811_firmware ipq4018_firmware ipq4019_firmware ipq4028_firmware ipq4029_firmware qca10901_firmware qca4024_firmware qca7500_firmware … |
Memory corruption due to lack of validation of pointer arguments passed to TrustZone BSP in Snapdragon Wired Infrastructure and Networking |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2020-11257 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 210923 | 8.8 |
HIGH
Local |
qualcomm |
ar7420_firmware ar9580_firmware csr8811_firmware ipq4018_firmware ipq4019_firmware ipq4028_firmware ipq4029_firmware qca10901_firmware qca4024_firmware qca7500_firmware … |
Memory corruption due to lack of check of validation of pointer to buffer passed to trustzone in Snapdragon Wired Infrastructure and Networking |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2020-11256 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 210924 | 7.0 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8053_firmware apq8076_firmware apq8096au_firmware csr6030_firmware mdm9206_firmware mdm9230_firmware mdm9250_firmware… |
Time-of-check time-of-use race condition While processing partition entries due to newly created buffer was read again from mmc without validation in Snapdragon Auto, Snapdragon Connectivity, Snapdra… |
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition |
CVE-2020-11233 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 210925 | 7.0 |
HIGH
Local |
qualcomm |
apq8009w_firmware apq8017_firmware apq8053_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csr8811_firmware csra6620_firmware csra6640_firmware fsm10055_firmware<… |
Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, S… |
CWE-362 CWE-416 Race Condition Use After Free |
CVE-2020-11250 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 210926 | 7.8 |
HIGH
Local |
qualcomm |
apq8009w_firmware apq8017_firmware apq8053_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmware csrb31024_firmware msm8909w_firmwar… |
Memory corruption due to ioctl command size was incorrectly set to the size of a pointer and not enough storage is allocated for the copy of the user argument in Snapdragon Auto, Snapdragon Compute, … |
CWE-131
Incorrect Calculation of Buffer Size |
CVE-2020-11240 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 210927 | 9.8 |
CRITICAL
Network |
qualcomm |
aqt1000_firmware pm3003a_firmware pm4125_firmware pm456_firmware pm6125_firmware pm6150_firmware pm6150a_firmware pm6150l_firmware pm6250_firmware pm6350_firmware pm640a… |
Possible heap overflow while parsing NAL header due to lack of check of length of data received from user in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Sna… |
CWE-787
Out-of-bounds Write |
CVE-2020-11182 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 210928 | 7.8 |
HIGH
Local |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmware csrb31024_firmware fsm10055_firmware fsm10056_firmware mdm9205_firmware pm3003a_firmwar… |
Trusted APPS to overwrite the CPZ memory of another use-case as TZ only checks the physical address not overlapping with its memory and its RoT memory in Snapdragon Auto, Snapdragon Compute, Snapdrag… |
CWE-20
Improper Input Validation |
CVE-2020-11178 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 210929 | 7.8 |
HIGH
Local |
qualcomm |
fsm10055_firmware fsm10056_firmware pm3003a_firmware pm6125_firmware pm6150_firmware pm6150a_firmware pm6150l_firmware pm6350_firmware pm660_firmware pm660l_firmware pm7… |
Use after free in camera If the threadmanager is being cleaned up while the worker thread is processing objects in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IO… |
CWE-416
Use After Free |
CVE-2020-11295 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 210930 | 7.8 |
HIGH
Local |
qualcomm |
aqt1000_firmware ar8035_firmware pm3003a_firmware pm4125_firmware pm4250_firmware pm6125_firmware pm6150_firmware pm6150a_firmware pm6150l_firmware pm6350_firmware pm640… |
Locked memory can be unlocked and modified by non secure boot loader through improper system call sequence making the memory region untrusted source of input for secure boot loader in Snapdragon Auto… |
CWE-667
Improper Locking |
CVE-2020-11284 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |