Nixpkgs security tracker

Try the new UI
Login with GitHub

Suggestions search

With package: snapdragon-profiler

Found 95 matching suggestions

View:
Compact
Detailed
Dismissed
(not in Nixpkgs)
Permalink CVE-2026-24090
7.1 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): None (N)
updated 3 months, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Missing Authentication for Critical Function in HLOS

Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow.

Affected products

Snapdragon
  • ==XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2025-59613
6.7 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 3 months, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Stack-based Buffer Overflow in Windows Compute

Memory Corruption when output buffer size is smaller than input buffer size during data copying operation.

Affected products

Snapdragon
  • ==QCM5430
  • ==WSA8830
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==FastConnect 6900
  • ==XG101039
  • ==WSA8845
  • ==X2000090
  • ==XG101032
  • ==WCD9378C
  • ==X2000092
  • ==WCD9385
  • ==QCM6490
  • ==X2000094
  • ==X2000077
  • ==QCA0000
  • ==XG101002
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==X2000086
  • ==FastConnect 7800
  • ==WCD9375
  • ==Cologne
  • ==WSA8845H
  • ==WSA8840
  • ==WCD9380
  • ==SC8380XP
  • ==WSA8835
  • ==WCD9370
  • ==FastConnect 6700

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2025-59612
6.7 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 3 months, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Stack-based Buffer Overflow in Windows Compute

Memory corruption in windows drivers while sending incorrect trusted application request

Affected products

Snapdragon
  • ==QCM5430
  • ==WSA8830
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==FastConnect 6900
  • ==XG101039
  • ==WSA8845
  • ==X2000090
  • ==XG101032
  • ==WCD9378C
  • ==X2000092
  • ==WCD9385
  • ==QCM6490
  • ==X2000094
  • ==X2000077
  • ==QCA0000
  • ==XG101002
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==X2000086
  • ==FastConnect 7800
  • ==WCD9375
  • ==Cologne
  • ==WSA8845H
  • ==WSA8840
  • ==WCD9380
  • ==SC8380XP
  • ==WSA8835
  • ==WCD9370
  • ==FastConnect 6700

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-25259
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 3 months, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Out-of-bounds Write in DSP Service

Memory corruption while processing multiple IOCTL command for escape operations.

Affected products

Snapdragon
  • ==FastConnect 6900
  • ==XG101039
  • ==WSA8845
  • ==X2000090
  • ==XG101032
  • ==WCD9378C
  • ==X2000092
  • ==WCD9385
  • ==X2000094
  • ==X2000077
  • ==QCA0000
  • ==XG101002
  • ==X2000086
  • ==FastConnect 7800
  • ==Cologne
  • ==WSA8845H
  • ==WSA8840
  • ==WCD9380
  • ==SC8380XP

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2025-59611
6.7 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 3 months, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Out-of-bounds Write in Core Services

Memory corruption in diagnostic services due to absence of input validation

Affected products

Snapdragon
  • ==QCM5430
  • ==WSA8830
  • ==WSA8815
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==FastConnect 6900
  • ==SM6250
  • ==FastConnect 6200
  • ==XG101039
  • ==WSA8845
  • ==X2000090
  • ==XG101032
  • ==WCD9378C
  • ==X2000092
  • ==WCD9341
  • ==AQT1000
  • ==WCD9385
  • ==QCM6490
  • ==X2000094
  • ==FastConnect 6800
  • ==WSA8810
  • ==Snapdragon 7c Gen 2 Compute Platform "Rennell Pro"
  • ==Snapdragon 8c Compute Platform (SC8180XP-AD) "Poipu Lite"
  • ==WCD9340
  • ==X2000077
  • ==Snapdragon 8c Compute Platform "Poipu Lite"
  • ==QCA0000
  • ==QCA6391
  • ==XG101002
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==Snapdragon 8cx Compute Platform "Poipu Pro"
  • ==Snapdragon 7c Compute Platform
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==X2000086
  • ==FastConnect 7800
  • ==WCD9375
  • ==Cologne
  • ==QCA6430
  • ==Snapdragon 8cx Compute Platform
  • ==WSA8835
  • ==WSA8845H
  • ==WSA8840
  • ==WCD9380
  • ==SC8380XP
  • ==Snapdragon 8cx Gen 2 5G Compute Platform
  • ==QCA6420
  • ==Snapdragon 8cx Gen 2 5G Compute Platform "Poipu Pro"
  • ==WCD9370
  • ==FastConnect 6700

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-24092
7.2 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Physical (P)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): None (N)
  • Scope (S): Changed (C)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Physical (P)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Changed (C)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 3 months, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Improper Validation of Syntactic Correctness of Input in Display

Memory Corruption when processing fastboot commands to set display mode.

Affected products

Snapdragon
  • ==XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2025-59601
6.5 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Adjacent (A)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): None (N)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Adjacent (A)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): None (N)
  • Modified Availability (MA): None (N)
updated 3 months, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Exposure of Sensitive Information Through Metadata in Powerline Communication Firmware

Information Disclosure when resetting device to factory default settings through powerline interface allows unauthorized access to device configuration.

Affected products

Snapdragon
  • ==QCA7005

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2025-59610
6.4 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): High (H)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): High (H)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 3 months, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Time-of-check Time-of-use (TOCTOU) Race Condition in Camera Driver

Memory Corruption when processing IOCTL requests with mismatched API versions due to concurrent modification of user-space buffer.

Affected products

Snapdragon
  • ==CSRA6640
  • ==QCA6574AU
  • ==Snapdragon 888+ 5G Mobile Platform
  • ==SRV1M
  • ==G2 Gen 1
  • ==QCA6696
  • ==Snapdragon 778G+ 5G Mobile Platform
  • ==Snapdragon 865 5G Mobile Platform
  • ==QCM4490
  • ==SXR2230P
  • ==SA8155P
  • ==QCA6688AQ
  • ==SXR2250P
  • ==WCD9341
  • ==WCD9371
  • ==QAM8255P
  • ==QCA6595AU
  • ==SM7550
  • ==IQ9 Series Platform
  • ==QAMSRV1H
  • ==WCN3660B
  • ==Snapdragon 6 Gen 4 Mobile Platform
  • ==Snapdragon 870 5G Mobile Platform
  • ==Snapdragon 4 Gen 1 Mobile Platform
  • ==QCA6391
  • ==Snapdragon 7+ Gen 2 Mobile Platform
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==C-V2X 9150
  • ==QCS2290
  • ==Snapdragon 460 Mobile Platform
  • ==Snapdragon 480 5G Mobile Platform
  • ==Snapdragon 7 Gen 1 Mobile Platform
  • ==Snapdragon Auto 5G Modem-RF
  • ==Snapdragon 680 4G Mobile Platform
  • ==WCN3980
  • ==Snapdragon 662 Mobile Platform
  • ==WCD9360
  • ==WCN7880
  • ==WCN3615
  • ==WSA8840
  • ==WSA8845H
  • ==Snapdragon 720G Mobile Platform
  • ==WCD9326
  • ==WSA8835
  • ==Monaco_IOT
  • ==QCM2290
  • ==SM6650P
  • ==QXM1096
  • ==SA6145P
  • ==SA8770P
  • ==WCN7861
  • ==Milos
  • ==SA8145P
  • ==SA8295P
  • ==Snapdragon 660 Mobile Platform
  • ==WCN6755
  • ==QLN1086BD
  • ==5G Fixed Wireless Access Platform
  • ==SRV1H
  • ==FastConnect 6200
  • ==SM8650Q
  • ==Snapdragon 4 Gen 2 Mobile Platform
  • ==Snapdragon 8 Gen 1 Mobile Platform
  • ==WCN7881
  • ==WSA8845
  • ==QCN9012
  • ==SD662
  • ==QCM4325
  • ==Snapdragon 8+ Gen 1 Mobile Platform
  • ==Snapdragon X55 5G Modem-RF System
  • ==SM8635P
  • ==SA8150P
  • ==SDA660
  • ==LeMans_AU_LGIT
  • ==Snapdragon 8 Gen 3 Mobile Platform
  • ==QCS8550
  • ==Snapdragon 480+ 5G Mobile Platform
  • ==FastConnect 6800
  • ==Pandeiro
  • ==WCN3680B
  • ==WSA8810
  • ==SA8620P
  • ==QAMSRV1M
  • ==G1 Gen 1
  • ==SA8255P
  • ==Snapdragon XR2+ Gen 1 Platform
  • ==CSRA6620
  • ==QXM1095
  • ==WCD9395
  • ==Snapdragon 695 5G Mobile Platform
  • ==Snapdragon 685 4G Mobile Platform
  • ==QXM1093
  • ==IQ6 Series Platform
  • ==Palawan25
  • ==SA4155P
  • ==SM7675P
  • ==FastConnect 7800
  • ==WCD9375
  • ==Flight RB5 5G Platform
  • ==Snapdragon 7s Gen 3 Mobile Platform
  • ==Snapdragon 888 5G Mobile Platform
  • ==WCD9380
  • ==Snapdragon 8+ Gen 2 Mobile Platform
  • ==QCA6595
  • ==FastConnect 6700
  • ==FSM100 Platform
  • ==WSA8830
  • ==SnapdragonAuto 4GModem
  • ==WSA8815
  • ==SDM429W
  • ==Vision Intelligence 400 Platform
  • ==WSA8832
  • ==SA8155
  • ==Qualcomm Video Collaboration VC1 Platform
  • ==SM6225P
  • ==WCD9385
  • ==QCM6490
  • ==SW5100P
  • ==SAR2130P
  • ==LeMansAU
  • ==SA7775P
  • ==SD 8 Gen1 5G
  • ==SM8475P
  • ==Snapdragon 778G 5G Mobile Platform
  • ==SM8635
  • ==WCD9390
  • ==Robotics RB5 Platform
  • ==Snapdragon 8 Elite
  • ==Netrani
  • ==SM7635P
  • ==SM8750P
  • ==SAR2230P
  • ==SD865 5G
  • ==QLN1083BD
  • ==SA4150P
  • ==QCS4490
  • ==QRB5165N
  • ==QCA6564AU
  • ==Vision Intelligence 300 Platform
  • ==CSRB31024
  • ==Snapdragon 6 Gen 3 Mobile Platform
  • ==WCD9370
  • ==WCD9378
  • ==Snapdragon 782G Mobile Platform
  • ==QCA8695AU
  • ==WCD9335
  • ==QCM5430
  • ==IQ8 Series Platform
  • ==SM7675
  • ==FastConnect 6900
  • ==SA7255P
  • ==QMP1000
  • ==Qualcomm Video Collaboration VC5 Platform
  • ==Snapdragon 765 5G Mobile Platform
  • ==QCS4290
  • ==Snapdragon 768G 5G Mobile Platform
  • ==Snapdragon XR2 5G Platform
  • ==WCN3950
  • ==Snapdragon 6 Gen 1 Mobile Platform
  • ==SM7550P
  • ==QPA1083BD
  • ==QPA1086BD
  • ==SA8195P
  • ==QRB5165M
  • ==SAR1250P
  • ==SA2150P
  • ==QCA6678AQ
  • ==SM7325P
  • ==QAM8295P
  • ==QXM1094
  • ==Snapdragon 429 Mobile Platform
  • ==Snapdragon 8 Gen 2 Mobile Platform
  • ==WCN7860
  • ==WCN3988
  • ==QCA6574A
  • ==Snapdragon 865+ 5G Mobile Platform
  • ==QCA6698AU
  • ==QCS410
  • ==QCA6698AQ
  • ==QCA6797AQ
  • ==Orne
  • ==SA6155P
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==Snapdragon 690 5G Mobile Platform
  • ==Snapdragon 765G 5G Mobile Platform
  • ==WCN3620
  • ==Qualcomm 215 Mobile Platform
  • ==SW5100
  • ==SXR2350P
  • ==Snapdragon X53 5G Modem-RF System
  • ==SA6155
  • ==QCN9011
  • ==SXR2330P
  • ==QCA6574
  • ==Robotics RB2 Platform
  • ==WCN3910
  • ==WCN3990
  • ==Snapdragon W5+ Gen 1 Wearable Platform
  • ==SM8550P
  • ==WCN6650
  • ==SM7250P
  • ==SM7435
  • ==Snapdragon AR1 Gen 1 Platform
  • ==SA6150P
  • ==SA9000P

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-24088
8.2 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): None (N)
  • Scope (S): Changed (C)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Changed (C)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 3 months, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Missing Authentication for Critical Function in Boot

Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader.

Affected products

Snapdragon
  • ==XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2025-59614
6.7 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 3 months, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Out-of-bounds Write in Windows Compute

Memory Corruption when sending random number generator command with insufficient output buffer size.

Affected products

Snapdragon
  • ==FastConnect 6900
  • ==XG101039
  • ==WSA8845
  • ==X2000090
  • ==XG101032
  • ==WCD9378C
  • ==X2000092
  • ==WCD9385
  • ==X2000094
  • ==X2000077
  • ==QCA0000
  • ==XG101002
  • ==X2000086
  • ==FastConnect 7800
  • ==Cologne
  • ==WSA8845H
  • ==WSA8840
  • ==WCD9380
  • ==SC8380XP

Matching in nixpkgs