Qualcomm Windows WLAN Host Memory Corruption Vulnerability via IOCTL Call

Vulnerability

A memory corruption vulnerability has been identified in the Windows WLAN Host component of various chipsets. This issue arises when an IOCTL call is made from user-space to read board data, leading to improper memory handling.

Impact

Exploitation of this vulnerability causes memory corruption, which can potentially be leveraged to execute arbitrary code or cause a denial-of-service condition.

Remediation

Qualcomm has notified device manufacturers about this vulnerability and recommended patching. Instructions for applying the patch can be found in the January 2025 Qualcomm Security Bulletin.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
3.3
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.