Transient Denial of Service Vulnerability in Qualcomm Wireless Products
CVE-2025-21449

7.5HIGH

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
8 July 2025

What is CVE-2025-21449?

A transient denial of service vulnerability exists in Qualcomm wireless products that stems from the improper processing of malformed length fields in SSID Information Elements (IEs). This flaw can allow attackers to send specially crafted packets that may disrupt service, leading to temporary network unavailability. Users of Qualcomm WLAN chipsets should be aware of this vulnerability and take appropriate measures to mitigate potential exploitation.

Affected Version(s)

Snapdragon Snapdragon Auto 315 5G IoT Modem

Snapdragon Snapdragon Auto APQ8017

Snapdragon Snapdragon Auto APQ8064AU

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-21449 : Transient Denial of Service Vulnerability in Qualcomm Wireless Products