Qualcomm Camera Buffer Over-Read Vulnerability Allowing Memory Corruption

Vulnerability

A buffer over-read vulnerability has been identified in Qualcomm's camera component, affecting various chipsets. This vulnerability arises from improper validation of output buffer sizes during IOCTL processing, leading to memory corruption. The issue is categorized as a high-severity vulnerability, with a CVSS score of 7.8.

Impact

Exploitation of this vulnerability causes memory corruption, which can lead to undefined behavior in the application, including potential arbitrary code execution or causing a crash.

Remediation

Qualcomm has notified device manufacturers about this vulnerability and recommended that they deploy patches. For information on the patching status of released devices, contact the device manufacturer.

Added: Apr 6, 2026, 4:54 PM
Updated: Apr 6, 2026, 4:54 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
3.3
remediation
0.0
relevance
5.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.