Qualcomm Products Memory Corruption Vulnerability Due to Improper Synchronization

Vulnerability

A memory corruption vulnerability has been identified in various chipsets used in Qualcomm products. This issue arises from missing locks and checks on the DMA fence, leading to improper synchronization. The vulnerability allows for a use-after-free condition, which can be exploited to cause memory corruption.

Impact

Exploitation of this vulnerability can lead to memory corruption, potentially allowing for arbitrary code execution or causing a denial-of-service condition.

Remediation

Qualcomm has released patches for this vulnerability. Instructions for applying the patch can be found in the Qualcomm March 2025 Security Bulletin.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.