Qualcomm Products Memory Corruption Vulnerability in HLOS
Vulnerability
A memory corruption vulnerability has been identified in various chipsets during the FRS UDS generation process. This issue arises from improper input validation, which can lead to memory corruption. The vulnerability is present in several chipsets, including those used in Snapdragon 8 Gen 1 and 8 Gen 3 mobile platforms, as well as in automotive applications.
Impact
Exploitation of this vulnerability can lead to memory corruption, which may cause undefined behavior in the application, including potential arbitrary code execution or application crashes.
Remediation
Qualcomm has released patches for this vulnerability. Instructions for applying the patch can be found in the Qualcomm May 2025 Security Bulletin.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
