Denial of Service Vulnerability in Qualcomm Machine Learning Implementation
CVE-2025-21459
7.5HIGH
Summary
A vulnerability in the Qualcomm Machine Learning Engine can lead to a transient Denial of Service (DOS) condition, triggered during the parsing of specific profiles. This flaw may allow an attacker to disrupt service availability by crafting inputs that exploit the parsing mechanism, potentially affecting the functionality of devices using the ML implementation.
Affected Version(s)
Snapdragon Snapdragon Auto AR8035
Snapdragon Snapdragon Auto FastConnect 6700
Snapdragon Snapdragon Auto FastConnect 6900
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved