Memory Corruption Vulnerability in Qualcomm Products
CVE-2025-21474

7.8HIGH

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
6 August 2025

What is CVE-2025-21474?

This vulnerability involves memory corruption that occurs when processing commands from the A2DP sink command queue within Qualcomm products. Exploiting this flaw could potentially lead to unauthorized access or manipulation of system resources, impacting the overall security and functionality of affected devices. It is crucial for users and administrators of these devices to remain vigilant to safeguard against potential threats arising from this vulnerability.

Affected Version(s)

Snapdragon Snapdragon Auto FastConnect 6800

Snapdragon Snapdragon Auto FastConnect 6900

Snapdragon Snapdragon Auto FastConnect 7800

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.