Qualcomm Products Out-of-Bounds Write Vulnerability in Video Processing

Vulnerability

A memory corruption vulnerability has been identified in various chipsets used in Qualcomm products. This vulnerability occurs in the video processing component when handling timestamp video decode commands that include large input values. The issue leads to memory corruption, which could potentially be exploited to cause unintended behavior in the application or system.

Impact

Exploitation of this vulnerability causes memory corruption, which can lead to arbitrary code execution or application crashes.

Remediation

Qualcomm has released patches for this vulnerability. Instructions for applying the patch can be found in the Qualcomm July 2025 Security Bulletin.

Added: Jul 8, 2025, 2:22 PM
Updated: Jul 8, 2025, 2:22 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
3.3
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.