CVE-2025-21476

Memory corruption when passing parameters to the Trusted Virtual Machine during the handshake.
Classic Buffer Overflow
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 1%
VendorProductVersion
qualcommqcs6490_firmware
-
qualcommqcs8550_firmware
-
qualcommqcs9100_firmware
-
qualcommsg8275_firmware
-
qualcommsg8275p_firmware
-
qualcommsm6650_firmware
-
qualcommsm7635_firmware
-
qualcommsm7675_firmware
-
qualcommsm7675p_firmware
-
qualcommsm8550_firmware
-
qualcommsm8550p_firmware
-
qualcommsm8635_firmware
-
qualcommsm8635p_firmware
-
qualcommsm8650_firmware
-
qualcommsm8650p_firmware
-
qualcommsm8650q_firmware
-
qualcommsm8750_firmware
-
qualcommsm8750p_firmware
-
qualcommsxr2330p_firmware
-
qualcommqca6391_firmware
-
qualcommqca6698aq_firmware
-
qualcommqcn9011_firmware
-
qualcommqcn9012_firmware
-
qualcommqcn9274_firmware
-
qualcommwcn3910_firmware
-
qualcommwcn3950_firmware
-
qualcommwcn6650_firmware
-
qualcommwcn6750_firmware
-
qualcommwcn6755_firmware
-
qualcommwcn6855_firmware
-
qualcommwcn6856_firmware
-
qualcommwcn7850_firmware
-
qualcommwcn7851_firmware
-
qualcommwcn7860_firmware
-
qualcommwcn7861_firmware
-
qualcommwcn7880_firmware
-
qualcommwcn7881_firmware
-
qualcommqcm5430_firmware
-
qualcommqcm6490_firmware
-
qualcommqcm8550_firmware
-
qualcommqcs5430_firmware
-
qualcommqcs615_firmware
-
𝑥
= Vulnerable software versions