CVE-2025-21439

HIGH

Qualcomm FastConnect 6700 Firmware - Memory Corruption via WLAN Driver IOCTL Board Data Read

Title source: llm
STIX 2.1

Description

Memory corruption may occur while reading board data via IOCTL call when the WLAN driver copies the content to the provided output buffer.

Scores

CVSS v3 7.8
EPSS 0.0017
EPSS Percentile 37.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-787
Status published
Products (25)
qualcomm/fastconnect_6700_firmware
qualcomm/fastconnect_6900_firmware
qualcomm/qca6595au_firmware
qualcomm/qcm5430_firmware
qualcomm/qcm6490_firmware
qualcomm/qcn7605_firmware
qualcomm/qcn7606_firmware
qualcomm/qcs5430_firmware
qualcomm/qcs6490_firmware
qualcomm/sc8180x\+sdx55_firmware
... and 15 more
Published Apr 07, 2025
Tracked Since Feb 18, 2026