7.8

CVE-2026-21372

Heap-Based Buffer Overflow in Power Management IC

Memory Corruption when sending IOCTL requests with invalid buffer sizes during memcpy operations.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
QualcommCologne Firmware Version-
   QualcommCologne Version-
QualcommQcm5430 Firmware Version-
   QualcommQcm5430 Version-
QualcommQcm6490 Firmware Version-
   QualcommQcm6490 Version-
QualcommWcd9370 Firmware Version-
   QualcommWcd9370 Version-
QualcommWcd9375 Firmware Version-
   QualcommWcd9375 Version-
QualcommWcd9378c Firmware Version-
   QualcommWcd9378c Version-
QualcommWcd9380 Firmware Version-
   QualcommWcd9380 Version-
QualcommWcd9385 Firmware Version-
   QualcommWcd9385 Version-
QualcommWcn3950 Firmware Version-
   QualcommWcn3950 Version-
QualcommWcn3988 Firmware Version-
   QualcommWcn3988 Version-
QualcommWsa8840 Firmware Version-
   QualcommWsa8840 Version-
QualcommWsa8845 Firmware Version-
   QualcommWsa8845 Version-
QualcommWsa8845h Firmware Version-
   QualcommWsa8845h Version-
QualcommX2000077 Firmware Version-
   QualcommX2000077 Version-
QualcommX2000086 Firmware Version-
   QualcommX2000086 Version-
QualcommX2000090 Firmware Version-
   QualcommX2000090 Version-
QualcommX2000092 Firmware Version-
   QualcommX2000092 Version-
QualcommX2000094 Firmware Version-
   QualcommX2000094 Version-
QualcommXg101002 Firmware Version-
   QualcommXg101002 Version-
QualcommXg101032 Firmware Version-
   QualcommXg101032 Version-
QualcommXg101039 Firmware Version-
   QualcommXg101039 Version-
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.01% 0.003
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
product-security@qualcomm.com 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-122 Heap-based Buffer Overflow

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().