Qualcomm Bluetooth Host Use-After-Free Vulnerability Allowing Memory Corruption

Vulnerability

A use-after-free vulnerability has been identified in the Bluetooth Host component of various chipsets, including those in the Snapdragon 8 Gen 3 Mobile Platform and FastConnect series. This vulnerability arises from memory corruption while processing IOCTL commands, specifically when the buffer in write loopback mode is accessed after being freed. The issue could potentially be exploited locally, leading to unauthorized memory access or manipulation.

Impact

Exploitation of this vulnerability causes memory corruption, which can lead to arbitrary code execution or other unintended behavior by allowing manipulation of memory after it has been freed, creating opportunities for exploitation.

Remediation

Qualcomm has released patches for this vulnerability. Instructions for applying the patch can be found in the Qualcomm June 2025 Security Bulletin.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.