
CVE-2025-21479 – Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability
https://notcve.org/view.php?id=CVE-2025-21479
03 Jun 2025 — Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands. Multiple Qualcomm chipsets contain an incorrect authorization vulnerability. This vulnerability allows for memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands. • https://docs.qualcomm.com/product/publicresources/securitybulletin/june-2025-bulletin.html • CWE-863: Incorrect Authorization •

CVE-2025-27038 – Qualcomm Multiple Chipsets Use-After-Free Vulnerability
https://notcve.org/view.php?id=CVE-2025-27038
03 Jun 2025 — Memory corruption while rendering graphics using Adreno GPU drivers in Chrome. Multiple Qualcomm chipsets contain a use-after-free vulnerability. This vulnerability allows for memory corruption while rendering graphics using Adreno GPU drivers in Chrome. • https://docs.qualcomm.com/product/publicresources/securitybulletin/june-2025-bulletin.html • CWE-416: Use After Free •

CVE-2025-27029 – Buffer Over-read in WLAN HAL
https://notcve.org/view.php?id=CVE-2025-27029
03 Jun 2025 — Transient DOS while processing the tone measurement response buffer when the response buffer is out of range. • https://docs.qualcomm.com/product/publicresources/securitybulletin/june-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2025-21480 – Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability
https://notcve.org/view.php?id=CVE-2025-21480
03 Jun 2025 — Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands. Multiple Qualcomm chipsets contain an incorrect authorization vulnerability. This vulnerability allows for memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands. • https://docs.qualcomm.com/product/publicresources/securitybulletin/june-2025-bulletin.html • CWE-863: Incorrect Authorization •

CVE-2025-21463 – Buffer Over-read in WLAN Host Communication
https://notcve.org/view.php?id=CVE-2025-21463
03 Jun 2025 — Transient DOS while processing the EHT operation IE in the received beacon frame. • https://docs.qualcomm.com/product/publicresources/securitybulletin/june-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-53026 – Buffer Over-read in Data Network Stack & Connectivity
https://notcve.org/view.php?id=CVE-2024-53026
03 Jun 2025 — Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call. • https://docs.qualcomm.com/product/publicresources/securitybulletin/june-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-53021 – Buffer Over-read in Data Network Stack & Connectivity
https://notcve.org/view.php?id=CVE-2024-53021
03 Jun 2025 — Information disclosure may occur while processing goodbye RTCP packet from network. • https://docs.qualcomm.com/product/publicresources/securitybulletin/june-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-53020 – Buffer Over-read in Data Network Stack & Connectivity
https://notcve.org/view.php?id=CVE-2024-53020
03 Jun 2025 — Information disclosure may occur while decoding the RTP packet with invalid header extension from network. • https://docs.qualcomm.com/product/publicresources/securitybulletin/june-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-53019 – Buffer Over-read in Data Network Stack & Connectivity
https://notcve.org/view.php?id=CVE-2024-53019
03 Jun 2025 — Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing sources. • https://docs.qualcomm.com/product/publicresources/securitybulletin/june-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-53018 – Time-of-check Time-of-use (TOCTOU) Race Condition in Camera Driver
https://notcve.org/view.php?id=CVE-2024-53018
03 Jun 2025 — Memory corruption may occur while processing the OIS packet parser. • https://docs.qualcomm.com/product/publicresources/securitybulletin/june-2025-bulletin.html • CWE-367: Time-of-check Time-of-use (TOCTOU) Race Condition •