Qualcomm Chipsets Memory Corruption Vulnerability in Secure Processor
Vulnerability
A use-after-free vulnerability has been identified in the secure processor of various Qualcomm chipsets. This vulnerability allows memory corruption by modifying user space addresses and passing them to the mem_free API, inadvertently freeing kernel memory. The issue can be exploited locally and affects chipsets such as Snapdragon 8cx Gen 3 Compute Platform, FastConnect 6900, and several others.
Impact
Exploitation of this vulnerability leads to memory corruption, which can cause unpredictable behavior in the system, potentially allowing for arbitrary code execution or other malicious actions.
Remediation
Qualcomm has notified device manufacturers about this vulnerability and is actively sharing patches. Instructions for applying the patch can be found in the Qualcomm February 2026 Security Bulletin.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
