Qualcomm JPEG Driver Buffer Over-read Vulnerability Allowing Memory Corruption

Vulnerability

A buffer over-read vulnerability has been identified in the JPEG driver of Qualcomm chipsets. This vulnerability leads to memory corruption while preprocessing IOCTL requests. It affects several chipsets across different Qualcomm platforms, including Snapdragon mobile platforms and various other chipsets used in automotive, camera, and WLAN applications.

Impact

Exploitation of this vulnerability causes memory corruption, which can lead to arbitrary code execution or other undefined behavior.

Remediation

Qualcomm has notified device manufacturers about this vulnerability and is actively sharing patches. For information on the patching status of released devices, contact the device manufacturer.

Added: Apr 6, 2026, 5:02 PM
Updated: Apr 6, 2026, 5:02 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.2
exploitability
3.3
remediation
0.0
relevance
5.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.