CVE-2025-21430

HIGH

Qualcomm Ar8035 Firmware - Buffer Over-read

Title source: rule
STIX 2.1

Description

Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.

Scores

CVSS v3 7.5
EPSS 0.0035
EPSS Percentile 57.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-126
Status published
Products (50)
qualcomm/315_5g_iot_modem_firmware
qualcomm/apq8017_firmware
qualcomm/apq8064au_firmware
qualcomm/aqt1000_firmware
qualcomm/ar8031_firmware
qualcomm/ar8035_firmware
qualcomm/csra6620_firmware
qualcomm/csra6640_firmware
qualcomm/csrb31024_firmware
qualcomm/fastconnect_6200_firmware
... and 40 more
Published Apr 07, 2025
Tracked Since Feb 18, 2026