CVE-2025-21458

Memory corruption when IOCTL interface is called to map and unmap buffers simultaneously.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 1%
VendorProductVersion
qualcommfastconnect_6900_firmware
-
qualcommqam8255p_firmware
-
qualcommqam8650p_firmware
-
qualcommqam8775p_firmware
-
qualcommqca6174a_firmware
-
qualcommqca6698aq_firmware
-
qualcommqca6797aq_firmware
-
qualcommsa7255p_firmware
-
qualcommsa7775p_firmware
-
qualcommsa8255p_firmware
-
qualcommsa8620p_firmware
-
qualcommsa8650p_firmware
-
qualcommsa8775p_firmware
-
qualcommsa9000p_firmware
-
qualcommsnapdragon_888_5g_mobile_platform_firmware
-
qualcommsnapdragon_888\+_5g_mobile_platform_\(sm8350-ac\)_firmware
-
qualcommsw5100_firmware
-
qualcommsw5100p_firmware
-
qualcommwcd9380_firmware
-
qualcommwcd9385_firmware
-
qualcommwcn3980_firmware
-
qualcommwcn3988_firmware
-
qualcommwsa8830_firmware
-
qualcommwsa8835_firmware
-
𝑥
= Vulnerable software versions