Qualcomm DSP Service Out-of-bounds Read Vulnerability Allowing Memory Corruption

Vulnerability

A memory corruption vulnerability has been identified in Qualcomm DSP Service while processing IOCTL calls for escape operations. This issue involves an out-of-bounds read, which can lead to memory corruption.

Impact

Exploitation of this vulnerability causes memory corruption, which can potentially be exploited to execute arbitrary code or cause a denial-of-service condition.

Remediation

Qualcomm has notified customers about this vulnerability and is actively sharing patches with OEMs. Instructions for applying the patch can be found in the Qualcomm June 2026 Security Bulletin.

Added: Jun 1, 2026, 11:56 PM
Updated: Jun 1, 2026, 11:56 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
3.3
remediation
6.0
relevance
9.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.