Qualcomm Products Buffer Overflow Vulnerability in Data Network Stack & Connectivity

Vulnerability

A memory corruption vulnerability has been identified in various chipsets used in Qualcomm products. This issue arises when the User Equipment (UE) receives a Real-time Transport Protocol (RTP) packet from the network, leading to improper reassembly of Network Abstraction Layer Units (NALUs). The vulnerability allows for memory corruption, which could be exploited to cause unintended behavior in the application or system.

Impact

Exploitation of this vulnerability leads to memory corruption, which can be used to manipulate the execution flow of the application or system, potentially causing a buffer overflow scenario.

Remediation

Qualcomm has notified device manufacturers about this vulnerability and is actively sharing patches. Instructions for applying the patch can be obtained from the device manufacturer.

Added: Sep 24, 2025, 9:19 PM
Updated: Sep 24, 2025, 9:19 PM

Vulnerability Rating

Custom Algorithm
spread
8.1
impact
1.3
exploitability
7.0
remediation
0.0
relevance
0.6
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.