Qualcomm Cologne
- <= 12/15/2025
A memory corruption vulnerability has been identified in Qualcomm DSP Service while processing IOCTL calls for escape operations. This issue involves an out-of-bounds read, which can lead to memory corruption.
Exploitation of this vulnerability causes memory corruption, which can potentially be exploited to execute arbitrary code or cause a denial-of-service condition.
Qualcomm has notified customers about this vulnerability and is actively sharing patches with OEMs. Instructions for applying the patch can be found in the Qualcomm June 2026 Security Bulletin.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.