HomeQualcommCVE-2025-47372

CVE-2025-47372

CRITICAL
9.0CVSS
Published: 2025-12-18
Updated: 2025-12-23
AI Analysis

Description

Memory Corruption when a corrupted ELF image with an oversized file size is read into a buffer without authentication.

CVSS Metrics

Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
Attack Vector
local
Complexity
low
Privileges
none
User Action
none
Scope
changed
Confidentiality
high
Integrity
high
Availability
none
Weaknesses
CWE-120CWE-787

Metadata

Primary Vendor
QUALCOMM
Published
12/18/2025
Last Modified
12/23/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

qualcomm : qam8255p_firmwarequalcomm : qam8620p_firmwarequalcomm : qam8650p_firmwarequalcomm : qam8775p_firmwarequalcomm : qamsrv1h_firmwarequalcomm : qamsrv1m_firmwarequalcomm : qca6595_firmwarequalcomm : qca6595au_firmwarequalcomm : qca6678aq_firmwarequalcomm : qca6696_firmwarequalcomm : qca6698aq_firmwarequalcomm : qca6797aq_firmwarequalcomm : sa7255p_firmwarequalcomm : sa7775p_firmwarequalcomm : sa8255p_firmwarequalcomm : sa8620p_firmwarequalcomm : sa8650p_firmwarequalcomm : sa8770p_firmwarequalcomm : sa8775p_firmwarequalcomm : sa9000p_firmwarequalcomm : srv1h_firmwarequalcomm : srv1l_firmwarequalcomm : srv1m_firmware

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2025-47372 | CRITICAL Severity | CVEDatabase.com | CVEDatabase.com