CVE-2025-47368

EUVD-2025-37606
Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 3%
Affected Products (NVD)
VendorProductVersion
qualcommfastconnect_6900_firmware
-
qualcommfastconnect_7800_firmware
-
qualcommsc8380xp_firmware
-
qualcommwcd9380_firmware
-
qualcommwcd9385_firmware
-
qualcommwsa8840_firmware
-
qualcommwsa8845_firmware
-
qualcommwsa8845h_firmware
-
𝑥
= Vulnerable software versions