Memory Corruption Vulnerability in Qualcomm GP Command Processing
CVE-2025-27074

8.8HIGH

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
4 November 2025

What is CVE-2025-27074?

A memory corruption vulnerability exists in Qualcomm products during the processing of a GP command response. This issue can potentially allow an attacker to manipulate memory allocations, leading to unexpected behaviors, application crashes, or the execution of arbitrary code. Proper safeguards and patches are essential to mitigate the risks associated with this vulnerability, ensuring the security and integrity of affected devices.

Affected Version(s)

Snapdragon Snapdragon Auto APQ8064AU

Snapdragon Snapdragon Auto CSR8811

Snapdragon Snapdragon Auto Immersive Home 214 Platform

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-27074 : Memory Corruption Vulnerability in Qualcomm GP Command Processing