Reachable Assertion in BT Controller
CVE-2025-47370

6.5MEDIUM

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
4 November 2025

What is CVE-2025-47370?

Transient DOS when a remote device sends an invalid connection request during BT connectable LE scan.

Affected Version(s)

Snapdragon Snapdragon Auto AR8035

Snapdragon Snapdragon Auto CSRB31024

Snapdragon Snapdragon Auto FastConnect 6700

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-47370 : Denial of Service Vulnerability in Bluetooth Connectable Scanning by Qualcomm