CVE-2025-47359

HIGH

Qualcomm Qca6391 Firmware - Use After Free

Title source: rule

Description

Memory Corruption when multiple threads simultaneously access a memory free API.

Scores

CVSS v3 7.8
EPSS 0.0001
EPSS Percentile 0.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-416
Status published

Affected Products (37)

qualcomm/qca6391_firmware
qualcomm/qca6420_firmware
qualcomm/qca6430_firmware
qualcomm/qcc2072_firmware
qualcomm/sc8380xp_firmware
qualcomm/sc8180x-ad_firmware
qualcomm/sc8180xp-ad_firmware
qualcomm/sc8180x-aaab_firmware
qualcomm/sc8180xp-acaf_firmware
qualcomm/sc8180x-acaf_firmware
qualcomm/sc8180xp-aaab_firmware
qualcomm/sc8280xp-abbb_firmware
qualcomm/wcd9340_firmware
qualcomm/wcd9341_firmware
qualcomm/wcd9378c_firmware
... and 22 more

Timeline

Published Feb 02, 2026
Tracked Since Feb 18, 2026