CVE-2025-21422

HIGH

Qualcomm Firmware - Cryptographic Issue via Crypto API Calls

Title source: llm
STIX 2.1

Description

Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.

Scores

CVSS v3 7.1
EPSS 0.0006
EPSS Percentile 17.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-310
Status published
Products (50)
qualcomm/aqt1000_firmware
qualcomm/ar8035_firmware
qualcomm/fastconnect_6200_firmware
qualcomm/fastconnect_6700_firmware
qualcomm/fastconnect_6800_firmware
qualcomm/fastconnect_6900_firmware
qualcomm/fastconnect_7800_firmware
qualcomm/qam8255p_firmware
qualcomm/qam8295p_firmware
qualcomm/qam8620p_firmware
... and 40 more
Published Jul 08, 2025
Tracked Since Feb 18, 2026