Qualcomm Automotive Audio Products Use-After-Free Vulnerability Allowing Memory Corruption

Vulnerability

A use-after-free vulnerability has been identified in various chipsets used in Qualcomm automotive audio products. This vulnerability leads to memory corruption by allowing concurrent access to shared buffers during the invocation of IOCTL calls, creating the potential for unauthorized memory manipulation.

Impact

Exploitation of this vulnerability causes memory corruption, which can lead to undefined behavior such as arbitrary code execution or causing a denial-of-service condition by crashing the application or system.

Remediation

Qualcomm has released patches for this vulnerability. Instructions for applying the patch can be found in the Qualcomm March 2026 Security Bulletin.

Added: Mar 2, 2026, 6:36 PM
Updated: Mar 2, 2026, 10:21 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
1.9
exploitability
2.9
remediation
7.7
relevance
3.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.