Qualcomm Boot Loader Memory Corruption Vulnerability Allowing Firmware Manipulation

Vulnerability

A memory corruption vulnerability has been identified in the boot loader of various chipsets, including those used in Snapdragon mobile platforms and automotive applications. This vulnerability arises from incorrect authorization when loading invalid firmware, leading to potential exploitation during the boot process.

Impact

Exploitation of this vulnerability causes memory corruption, which can be leveraged to manipulate the boot loader's firmware handling, potentially leading to unauthorized firmware execution or modification.

Remediation

Qualcomm has released patches for this vulnerability. Instructions for applying the patch can be found in the Qualcomm December 2025 Security Bulletin.

Added: Dec 18, 2025, 7:14 AM
Updated: Dec 18, 2025, 7:14 AM

Vulnerability Rating

Custom Algorithm
spread
8.1
impact
0.6
exploitability
3.5
remediation
7.7
relevance
1.5
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.