MSM8937 Firmware
228 CVEs tracked. 1 of them are in CISA KEV.
This hub aggregates every CVE we track for MSM8937 Firmware, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
MSM8937 Firmware CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 228 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical82
- High126
- Medium20
Latest CVEs
The 15 most recently published vulnerabilities affecting MSM8937 Firmware.
- CVE-2023-21626Improper Authentication in HLOS.7.1
- CVE-2023-21625Buffer Over-read in Network Services8.2
- CVE-2022-40510Buffer copy without checking size of input in Audio.9.8
- CVE-2022-33213Memory Corruption in MODEM7.5
- CVE-2022-25705Integer Overflow to Buffer Overflow in Modem7.8
- CVE-2022-25694Use of Out-of-range Pointer Offset in MODEM8.4
- CVE-2022-33248Integer overflow to buffer overflow in User Identity Module7.8
- CVE-2022-33233Configuration weakness in modem7.8
- CVE-2022-25682Memory corruption in MODEM UIM due to usage of out of range pointer offset while decoding command from card in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,...8.4
- CVE-2022-25685Denial of service in Modem module due to improper authorization while error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, S...7.5
- CVE-2022-25695Memory corruption in MODEM due to Improper Validation of Array Index while processing GSTK Proactive commands in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IO...8.4
- CVE-2022-25702Denial of service in modem due to reachable assertion while processing reconfiguration message in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Weara...7.5
- CVE-2022-25718Cryptographic issue in WLAN due to improper check on return value while authentication handshake in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdrago...9.1
- CVE-2022-25719Information disclosure in WLAN due to improper length check while processing authentication handshake in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snap...8.2
- CVE-2022-22058Memory corruption due to use after free issue in kernel while processing ION handles in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, S...8.4
Product grouping is registry-driven, with AI assist and human review. How it works