Qualcomm Products Buffer Over-read Vulnerability in WLAN HAL Allowing Transient Denial-of-Service

Vulnerability

A buffer over-read vulnerability has been identified in the WLAN Hardware Abstraction Layer (HAL) of various chipsets, including those in the Snapdragon 8 Gen 3 Mobile Platform and FastConnect 7800. This vulnerability can lead to a transient denial-of-service condition by processing tone measurement response buffers that are out of range.

Impact

Exploitation of this vulnerability causes a transient denial-of-service condition by disrupting normal processing, likely leading to a temporary unavailability of the affected service or functionality.

Remediation

Qualcomm has released patches for this vulnerability. Instructions for applying the patch can be found in the Qualcomm June 2025 Security Bulletin.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
5.4
remediation
7.7
relevance
0.1
threat
0.0
urgency
2.9
incentive
5.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.