Qualcomm Camera Untrusted Pointer Dereference Vulnerability Allowing Memory Corruption

Vulnerability

A vulnerability exists in Qualcomm chipsets that allows for memory corruption by processing camera sensor control codes with invalid output buffers. This issue is present in several chipsets, including those used in mobile platforms and automotive applications.

Impact

Exploitation of this vulnerability leads to memory corruption, which can potentially be exploited to execute arbitrary code or cause a denial-of-service condition.

Remediation

Qualcomm has notified device manufacturers about this vulnerability and is actively sharing patches. Instructions for applying the patch can be found in the Qualcomm May 2026 Security Bulletin.

Added: May 4, 2026, 5:41 PM
Updated: May 4, 2026, 5:41 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
3.3
remediation
0.0
relevance
7.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.