In all Qualcomm products with Android releases from CAF using the Linux kernel, the UE can send unprotected MeasurementReports revealing UE location.
Linux Kernel 6.x/5.15 LTS | Android 14/13
Exploit
CVE-2016-10381
NVD
Refer to CVE-2016-10381 NVD advisory