8.6
CVE-2025-21479
- EPSS 0.21%
- Veröffentlicht 03.06.2025 06:42:42
- Zuletzt bearbeitet 02.10.2025 01:57:47
- Quelle product-security@qualcomm.com
- Teams Watchlist Login
- Unerledigt Login
Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qualcomm ≫ Aqt1000 Firmware Version-
Qualcomm ≫ Fastconnect 6200 Firmware Version-
Qualcomm ≫ Fastconnect 6700 Firmware Version-
Qualcomm ≫ Fastconnect 6900 Firmware Version-
Qualcomm ≫ Fastconnect 7800 Firmware Version-
Qualcomm ≫ Fastconnect 6800 Firmware Version-
Qualcomm ≫ Qca6391 Firmware Version-
Qualcomm ≫ Qcm4490 Firmware Version-
Qualcomm ≫ Qcs4490 Firmware Version-
Qualcomm ≫ Sd855 Firmware Version-
Qualcomm ≫ Sm4635 Firmware Version-
Qualcomm ≫ Sm6250 Firmware Version-
Qualcomm ≫ Sm6650 Firmware Version-
Qualcomm ≫ Sm6650p Firmware Version-
Qualcomm ≫ Sm7325p Firmware Version-
Qualcomm ≫ Sm7635 Firmware Version-
Qualcomm ≫ Sm7675 Firmware Version-
Qualcomm ≫ Sm7675p Firmware Version-
Qualcomm ≫ Sm8550p Firmware Version-
Qualcomm ≫ Sm8635 Firmware Version-
Qualcomm ≫ Sm8635p Firmware Version-
Qualcomm ≫ Sm8650q Firmware Version-
Qualcomm ≫ Snapdragon 460 Mobile Platform Firmware Version-
Qualcomm ≫ Snapdragon 662 Mobile Platform Firmware Version-
Qualcomm ≫ Snapdragon 720g Mobile Platform Firmware Version-
Qualcomm ≫ Snapdragon 855 Mobile Platform Firmware Version-
Qualcomm ≫ Snapdragon Ar1 Gen 1 Firmware Version-
Qualcomm ≫ Sxr2230p Firmware Version-
Qualcomm ≫ Sxr2250p Firmware Version-
Qualcomm ≫ Sxr2330p Firmware Version-
Qualcomm ≫ Wcd9395 Firmware Version-
Qualcomm ≫ Wcn3950 Firmware Version-
Qualcomm ≫ Wcn3988 Firmware Version-
Qualcomm ≫ Wcn6450 Firmware Version-
Qualcomm ≫ Wcn6650 Firmware Version-
Qualcomm ≫ Wcn6755 Firmware Version-
Qualcomm ≫ Wcn7861 Firmware Version-
Qualcomm ≫ Wcn7881 Firmware Version-
Qualcomm ≫ Wsa8810 Firmware Version-
Qualcomm ≫ Wsa8815 Firmware Version-
Qualcomm ≫ Wsa8830 Firmware Version-
Qualcomm ≫ Wsa8835 Firmware Version-
Qualcomm ≫ Wsa8840 Firmware Version-
Qualcomm ≫ Wsa8845 Firmware Version-
Qualcomm ≫ Wsa8845h Firmware Version-
Qualcomm ≫ Wcd9341 Firmware Version-
Qualcomm ≫ Wcd9370 Firmware Version-
Qualcomm ≫ Wcd9375 Firmware Version-
Qualcomm ≫ Wcd9378 Firmware Version-
Qualcomm ≫ Wcd9380 Firmware Version-
Qualcomm ≫ Wcd9385 Firmware Version-
Qualcomm ≫ Wcd9390 Firmware Version-
Qualcomm ≫ Wsa8832 Firmware Version-
03.06.2025: CISA Known Exploited Vulnerabilities (KEV) Catalog
Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability
SchwachstelleMultiple Qualcomm chipsets contain an incorrect authorization vulnerability. This vulnerability allows for memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
BeschreibungApply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Erforderliche MaßnahmenTyp | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.21% | 0.43 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
product-security@qualcomm.com | 8.6 | 1.8 | 6 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
|
CWE-863 Incorrect Authorization
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.