Qualcomm FastConnect 6900
cpe:2.3:h:qualcomm:fastconnect_6900:*:*:*:*:*:*:*, +1 more
- >= 6900, < 6900-1.0.0
A high-impact memory corruption vulnerability has been identified in Qualcomm's DSP service. This issue arises from improper handling of concurrent memory mapping and unmapping requests from user-space applications, leading to a use-after-free condition. The vulnerability is present in various chipsets, including those used in mobile platforms, automotive applications, and video collaboration devices.
Exploitation of this vulnerability causes memory corruption, which can lead to arbitrary code execution or the introduction of a denial-of-service condition.
Qualcomm has released patches for this vulnerability. Instructions for applying the patch can be found in the Qualcomm December 2025 Security Bulletin.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.