Qualcomm Powerline Communication Firmware Information Disclosure Vulnerability

Vulnerability

A vulnerability has been identified in Qualcomm's Powerline Communication Firmware, specifically in the QCA7005 chipset. This vulnerability allows for information disclosure by accessing and modifying the PIB file of a remote device via powerline. The issue arises from an exposure of sensitive information through metadata, which could potentially be exploited to access unauthorized data or disrupt normal operations.

Impact

Exploitation of this vulnerability leads to unauthorized information disclosure.

Remediation

Qualcomm has notified customers about this vulnerability and provided patching instructions. The patch can be applied by following the instructions available in the Qualcomm August 2025 Security Bulletin.

Added: Aug 6, 2025, 8:22 AM
Updated: Aug 6, 2025, 8:22 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
4.7
remediation
7.9
relevance
0.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.