CVE-2024-49847
Published May 6, 2025Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key data IE.
Vendor archive
2,506 CVEs tagged to vendor qualcomm — 535 Critical, 1,518 High, 452 Medium, 1 Low, 0 Unrated.
Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key data IE.
Memory corruption while decoding of OTA messages from T3448 IE.
Memory corruption during the FRS UDS generation process.
Memory corruption while triggering commands in the PlayReady Trusted application.
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
Memory corruption while reading secure file.
Memory corruption while processing an IOCTL call to set mixer controls.
Memory corruption can occur during context user dumps due to inadequate checks on buffer length.
Memory corruption while handling multiple IOCTL calls from userspace to operate DMA operations.
Memory corruption while sound model registration for voice activation with audio kernel driver.
Memory corruption may occur when invoking IOCTL calls from userspace to the camera kernel driver to dump request information, due to a missing memory requirement check.
Memory corruption while acquire and update IOCTLs during IFE output resource ID validation.
Memory corruption while invoking IOCTL calls from userspace to camera kernel driver to dump request information.
Memory corruption while prociesing command buffer buffer in OPE module.
Memory corruption Camera kernel when large number of devices are attached through userspace.
Memory corruption during array access in Camera kernel due to invalid index from invalid command data.
Memory corruption may occur during IO configuration processing when the IO port count is invalid.
Memory corruption due to improper bounds check while command handling in camera-kernel driver.
Memory corruption while encoding JPEG format.
Memory corruption during concurrent buffer access due to modification of the reference count.
Memory corruption when blob structure is modified by user-space after kernel verification.
Memory corruption during concurrent access to server info object due to incorrect reference count update.
Memory corruption while handling schedule request in Camera Request Manager(CRM) due to invalid link count in the corresponding session.
Memory corruption during concurrent access to server info object due to unprotected critical field.