CVE-2025-47375
Undergoing Analysis Undergoing Analysis - In Progress
Memory Corruption in Qualcomm IOCTL Handling Enables Potential Exploits

Publication date: 2026-03-02

Last updated on: 2026-03-04

Assigner: Qualcomm, Inc.

Description
Memory corruption while handling different IOCTL calls from the user-space simultaneously.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-03-02
Last Modified
2026-03-04
Generated
2026-05-07
AI Q&A
2026-03-02
EPSS Evaluated
2026-05-05
NVD
EUVD
Affected Vendors & Products
Showing 169 associated CPEs
Vendor Product Version / Range
qualcomm qcm4325_firmware *
qualcomm qcm5430_firmware *
qualcomm qcm6125_firmware *
qualcomm qcm6490_firmware *
qualcomm qcn6224_firmware *
qualcomm qcn6274_firmware *
qualcomm qcn9011_firmware *
qualcomm qcn9012_firmware *
qualcomm qcs2290_firmware *
qualcomm qcs4290_firmware *
qualcomm qep8111_firmware *
qualcomm qfw7114_firmware *
qualcomm qfw7124_firmware *
qualcomm qrb5165m_firmware *
qualcomm qrb5165n_firmware *
qualcomm qualcomm_215_mobile_platform_firmware *
qualcomm video_collaboration_vc1_platform_firmware *
qualcomm video_collaboration_vc3_platform_firmware *
qualcomm video_collaboration_vc5_platform_firmware *
qualcomm robotics_rb2_platform_firmware *
qualcomm robotics_rb5_platform_firmware *
qualcomm sa4150p_firmware *
qualcomm sa4155p_firmware *
qualcomm sa6145p_firmware *
qualcomm sa6150p_firmware *
qualcomm sa6155p_firmware *
qualcomm sa7255p_firmware *
qualcomm sa7775p_firmware *
qualcomm sa8145p_firmware *
qualcomm sa8150p_firmware *
qualcomm sa8155p_firmware *
qualcomm sa8195p_firmware *
qualcomm sa8255p_firmware *
qualcomm sa8295p_firmware *
qualcomm sa8620p_firmware *
qualcomm sa8770p_firmware *
qualcomm sa9000p_firmware *
qualcomm sd662_firmware *
qualcomm sd865_5g_firmware *
qualcomm sda660_firmware *
qualcomm ar8031_firmware *
qualcomm ar8035_firmware *
qualcomm csra6620_firmware *
qualcomm csra6640_firmware *
qualcomm fastconnect_6200_firmware *
qualcomm fastconnect_6700_firmware *
qualcomm fastconnect_6800_firmware *
qualcomm fastconnect_6900_firmware *
qualcomm fastconnect_7800_firmware *
qualcomm flight_rb5_5g_platform_firmware *
qualcomm fwa_gen_3_ultra_firmware *
qualcomm g1_gen_1_firmware *
qualcomm lemans_au_lgit_firmware *
qualcomm lemansau_firmware *
qualcomm mdm9250_firmware *
qualcomm mdm9628_firmware *
qualcomm milos_firmware *
qualcomm qam8255p_firmware *
qualcomm qam8295p_firmware *
qualcomm qamsrv1h_firmware *
qualcomm qamsrv1m_firmware *
qualcomm qca2066_firmware *
qualcomm qca6174a_firmware *
qualcomm qca6391_firmware *
qualcomm qca6564a_firmware *
qualcomm qca6564au_firmware *
qualcomm qca6574_firmware *
qualcomm qca6574a_firmware *
qualcomm qca6574au_firmware *
qualcomm qca6584au_firmware *
qualcomm qca6595_firmware *
qualcomm qca6595au_firmware *
qualcomm qca6678aq_firmware *
qualcomm qca6688aq_firmware *
qualcomm qca6696_firmware *
qualcomm qca6698aq_firmware *
qualcomm qca6698au_firmware *
qualcomm qca6797aq_firmware *
qualcomm qca8081_firmware *
qualcomm qca8337_firmware *
qualcomm qca8695au_firmware *
qualcomm qca9367_firmware *
qualcomm qca9377_firmware *
qualcomm qcc710_firmware *
qualcomm qcm2290_firmware *
qualcomm wsa8835_firmware *
qualcomm wsa8840_firmware *
qualcomm wsa8845_firmware *
qualcomm wsa8845h_firmware *
qualcomm sm6225p_firmware *
qualcomm sm6650p_firmware *
qualcomm sm7325p_firmware *
qualcomm sm7550_firmware *
qualcomm sm7550p_firmware *
qualcomm sm7635p_firmware *
qualcomm sm7675_firmware *
qualcomm sm7675p_firmware *
qualcomm sm8550p_firmware *
qualcomm sm8635_firmware *
qualcomm sm8635p_firmware *
qualcomm sm8650q_firmware *
qualcomm smart_audio_400_platform_firmware *
qualcomm snapdragon_4_gen_1_mobile_platform_firmware *
qualcomm snapdragon_460_mobile_platform_firmware *
qualcomm snapdragon_480_5g_mobile_platform_firmware *
qualcomm snapdragon_480+_5g_mobile_platform_firmware *
qualcomm snapdragon_6_gen_4_mobile_platform_firmware *
qualcomm snapdragon_660_mobile_platform_firmware *
qualcomm snapdragon_662_mobile_platform_firmware *
qualcomm snapdragon_680_4g_mobile_platform_firmware *
qualcomm snapdragon_685_4g_mobile_platform_firmware *
qualcomm snapdragon_690_5g_mobile_platform_firmware *
qualcomm snapdragon_695_5g_mobile_platform_firmware *
qualcomm snapdragon_778g_5g_mobile_platform_firmware *
qualcomm snapdragon_778g+_5g_mobile_platform_firmware *
qualcomm snapdragon_782g_mobile_platform_firmware *
qualcomm snapdragon_7c+_gen_3_compute_firmware *
qualcomm snapdragon_7s_gen_3_mobile_platform_firmware *
qualcomm snapdragon_8_gen_2_mobile_platform_firmware *
qualcomm snapdragon_8_gen_3_mobile_platform_firmware *
qualcomm snapdragon_8+_gen_2_mobile_platform_firmware *
qualcomm snapdragon_865_5g_mobile_platform_firmware *
qualcomm snapdragon_865+_5g_mobile_platform_firmware *
qualcomm snapdragon_870_5g_mobile_platform_firmware *
qualcomm snapdragon_888_5g_mobile_platform_firmware *
qualcomm snapdragon_888+_5g_mobile_platform_firmware *
qualcomm snapdragon_auto_5g_modem-rf_firmware *
qualcomm snapdragon_auto_5g_modem-rf_gen_2_firmware *
qualcomm snapdragon_w5+_gen_1_wearable_platform_firmware *
qualcomm snapdragon_x12_lte_modem_firmware *
qualcomm snapdragon_x32_5g_modem-rf_system_firmware *
qualcomm snapdragon_x35_5g_modem-rf_system_firmware *
qualcomm snapdragon_x53_5g_modem-rf_system_firmware *
qualcomm snapdragon_x55_5g_modem-rf_system_firmware *
qualcomm snapdragon_x72_5g_modem-rf_system_firmware *
qualcomm snapdragon_x75_5g_modem-rf_system_firmware *
qualcomm snapdragon_xr2_5g_platform_firmware *
qualcomm snapdragon_xr2+_gen_1_platform_firmware *
qualcomm srv1h_firmware *
qualcomm srv1m_firmware *
qualcomm sw5100_firmware *
qualcomm sw5100p_firmware *
qualcomm wcd9326_firmware *
qualcomm wcd9335_firmware *
qualcomm wcd9340_firmware *
qualcomm wcd9341_firmware *
qualcomm wcd9370_firmware *
qualcomm wcd9371_firmware *
qualcomm wcd9375_firmware *
qualcomm wcd9378_firmware *
qualcomm wcd9380_firmware *
qualcomm wcd9385_firmware *
qualcomm wcd9390_firmware *
qualcomm wcd9395_firmware *
qualcomm wcn3615_firmware *
qualcomm wcn3660b_firmware *
qualcomm wcn3680b_firmware *
qualcomm wcn3910_firmware *
qualcomm wcn3950_firmware *
qualcomm wcn3980_firmware *
qualcomm wcn3988_firmware *
qualcomm wcn3990_firmware *
qualcomm wcn6450_firmware *
qualcomm wcn6650_firmware *
qualcomm wcn6755_firmware *
qualcomm wsa8810_firmware *
qualcomm wsa8815_firmware *
qualcomm wsa8830_firmware *
qualcomm wsa8832_firmware *
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-416 The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability involves memory corruption that occurs when different IOCTL calls from user-space are handled simultaneously. IOCTL calls are used for communication between user applications and device drivers, and improper handling can lead to memory corruption.


How can this vulnerability impact me? :

The vulnerability has a high impact on confidentiality, integrity, and availability, as indicated by its CVSS score. Exploiting this memory corruption could allow an attacker with low privileges and local access to cause significant damage, such as unauthorized data access, data modification, or denial of service.


How does this vulnerability affect compliance with common standards and regulations (like GDPR, HIPAA)?:

I don't know


How can this vulnerability be detected on my network or system? Can you suggest some commands?

I don't know


What immediate steps should I take to mitigate this vulnerability?

I don't know


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart