CVE-2026-21385

HIGH KEV

Product - Memory Corruption

Title source: llm

Description

Memory corruption while using alignments for memory allocation.

Exploits (2)

github SCANNER 10 stars
by XiaomingX · pythonpoc
https://github.com/XiaomingX/data-cve-poc-py-v1/tree/main/2026/CVE-2026-21385

Scores

CVSS v3 7.8
EPSS 0.0038
EPSS Percentile 59.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Exploitation Intel

CISA KEV 2026-03-03
VulnCheck KEV 2026-03-02
ENISA EUVD EUVD-2026-9202

Classification

CWE
CWE-190
Status published

Affected Products (50)

qualcomm/sm7675p_firmware
qualcomm/sm8475p_firmware
qualcomm/sm8550p_firmware
qualcomm/sm8635_firmware
qualcomm/sm8635p_firmware
qualcomm/sm8650q_firmware
qualcomm/sm8750p_firmware
qualcomm/smart_audio_400_platform_firmware
qualcomm/smart_display_200_platform_firmware
qualcomm/snapdragon_4_gen_1_mobile_platform_firmware
qualcomm/snapdragon_4_gen_2_mobile_platform_firmware
qualcomm/snapdragon_429_mobile_platform_firmware
qualcomm/snapdragon_460_mobile_platform_firmware
qualcomm/snapdragon_480\+_5g_mobile_platform_firmware
qualcomm/snapdragon_480_5g_mobile_platform_firmware
... and 35 more

Timeline

Published Mar 02, 2026
KEV Added Mar 03, 2026
Tracked Since Mar 03, 2026