
CVE-2025-21453 – Use After Free in GPS HLOS Driver
https://notcve.org/view.php?id=CVE-2025-21453
06 May 2025 — Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures occur. Corrupción de memoria durante el procesamiento de una estructura de datos, cuando se accede a un iterador luego de haberlo eliminado, ocurren fallas potenciales. • https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html • CWE-416: Use After Free •

CVE-2024-49847 – Buffer Over-read in Multi-Mode Call Processor
https://notcve.org/view.php?id=CVE-2024-49847
06 May 2025 — Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key data IE. DOS transitorio durante el procesamiento de una aceptación de registro OTA debido a datos de clave de cifrado incorrectos IE. • https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-49844 – Improper Input Validation in Automotive
https://notcve.org/view.php?id=CVE-2024-49844
06 May 2025 — Memory corruption while triggering commands in the PlayReady Trusted application. Corrupción de memoria al activar comandos en la aplicación PlayReady Trusted. • https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html • CWE-20: Improper Input Validation •

CVE-2024-49842 – Improper Access Control in Hypervisor
https://notcve.org/view.php?id=CVE-2024-49842
06 May 2025 — Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions. Corrupción de memoria durante la asignación de memoria al espacio de dirección de VM protegido debido a restricciones de API incorrectas. • https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html • CWE-284: Improper Access Control •

CVE-2024-49841 – Detection of Error Condition Without Action in Hypervisor
https://notcve.org/view.php?id=CVE-2024-49841
06 May 2025 — Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling. Corrupción de memoria durante la asignación de memoria a una máquina virtual periférica sin cabeza debido a un manejo incorrecto del código de error. • https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html • CWE-390: Detection of Error Condition Without Action •

CVE-2024-49835 – Out-of-bounds Write in SPS Applications
https://notcve.org/view.php?id=CVE-2024-49835
06 May 2025 — Memory corruption while reading secure file. Corrupción de memoria al leer un archivo seguro. • https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html • CWE-787: Out-of-bounds Write •

CVE-2024-49830 – Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Audio
https://notcve.org/view.php?id=CVE-2024-49830
06 May 2025 — Memory corruption while processing an IOCTL call to set mixer controls. Corrupción de memoria al procesar una llamada IOCTL para configurar los controles del mezclador. • https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2024-49829 – Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Camera
https://notcve.org/view.php?id=CVE-2024-49829
06 May 2025 — Memory corruption can occur during context user dumps due to inadequate checks on buffer length. La corrupción de memoria puede ocurrir durante volcados de contexto de usuario debido a controles inadecuados en la longitud del búfer. • https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2024-45581 – Out-of-bounds Write in Audio
https://notcve.org/view.php?id=CVE-2024-45581
06 May 2025 — Memory corruption while sound model registration for voice activation with audio kernel driver. Corrupción de memoria durante el registro del modelo de sonido para la activación de voz con el controlador del kernel de audio. • https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html • CWE-787: Out-of-bounds Write •

CVE-2024-45579 – Improper Input Validation in Camera Driver
https://notcve.org/view.php?id=CVE-2024-45579
06 May 2025 — Memory corruption may occur when invoking IOCTL calls from userspace to the camera kernel driver to dump request information, due to a missing memory requirement check. Se puede producir corrupción de memoria al invocar llamadas IOCTL desde el espacio de usuario al controlador del kernel de la cámara para volcar la información de la solicitud, debido a una verificación de requisito de memoria faltante. • https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html • CWE-20: Improper Input Validation •