7.8
CVE-2025-21476
- EPSS 0.01%
- Veröffentlicht 24.09.2025 16:15:33
- Zuletzt bearbeitet 25.09.2025 16:08:48
- Quelle product-security@qualcomm.com
- Teams Watchlist Login
- Unerledigt Login
Memory corruption when passing parameters to the Trusted Virtual Machine during the handshake.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qualcomm ≫ Qcs6490 Firmware Version-
Qualcomm ≫ Qcs8550 Firmware Version-
Qualcomm ≫ Qcs9100 Firmware Version-
Qualcomm ≫ Sg8275 Firmware Version-
Qualcomm ≫ Sg8275p Firmware Version-
Qualcomm ≫ Sm6650 Firmware Version-
Qualcomm ≫ Sm7635 Firmware Version-
Qualcomm ≫ Sm7675 Firmware Version-
Qualcomm ≫ Sm7675p Firmware Version-
Qualcomm ≫ Sm8550 Firmware Version-
Qualcomm ≫ Sm8550p Firmware Version-
Qualcomm ≫ Sm8635 Firmware Version-
Qualcomm ≫ Sm8635p Firmware Version-
Qualcomm ≫ Sm8650 Firmware Version-
Qualcomm ≫ Sm8650p Firmware Version-
Qualcomm ≫ Sm8650q Firmware Version-
Qualcomm ≫ Sm8750 Firmware Version-
Qualcomm ≫ Sm8750p Firmware Version-
Qualcomm ≫ Sxr2330p Firmware Version-
Qualcomm ≫ Qca6391 Firmware Version-
Qualcomm ≫ Qca6698aq Firmware Version-
Qualcomm ≫ Qcn9011 Firmware Version-
Qualcomm ≫ Qcn9012 Firmware Version-
Qualcomm ≫ Qcn9274 Firmware Version-
Qualcomm ≫ Wcn3910 Firmware Version-
Qualcomm ≫ Wcn3950 Firmware Version-
Qualcomm ≫ Wcn6650 Firmware Version-
Qualcomm ≫ Wcn6750 Firmware Version-
Qualcomm ≫ Wcn6755 Firmware Version-
Qualcomm ≫ Wcn6855 Firmware Version-
Qualcomm ≫ Wcn6856 Firmware Version-
Qualcomm ≫ Wcn7850 Firmware Version-
Qualcomm ≫ Wcn7851 Firmware Version-
Qualcomm ≫ Wcn7860 Firmware Version-
Qualcomm ≫ Wcn7861 Firmware Version-
Qualcomm ≫ Wcn7880 Firmware Version-
Qualcomm ≫ Wcn7881 Firmware Version-
Qualcomm ≫ Qcm5430 Firmware Version-
Qualcomm ≫ Qcm6490 Firmware Version-
Qualcomm ≫ Qcm8550 Firmware Version-
Qualcomm ≫ Qcs5430 Firmware Version-
Qualcomm ≫ Qcs615 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.01% | 0.014 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
product-security@qualcomm.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.