Information Disclosure Vulnerability in Qualcomm Products
CVE-2025-47406

6.1MEDIUM

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
4 May 2026

What is CVE-2025-47406?

A vulnerability exists in Qualcomm IOCTL handler callbacks which can lead to information disclosure. This occurs because the buffer size is not correctly verified during processing, potentially allowing attackers to exploit this weakness to access sensitive information. It is crucial for affected users to assess their systems and apply necessary security measures to mitigate risks associated with this vulnerability.

Affected Version(s)

Snapdragon Snapdragon Compute Cologne

Snapdragon Snapdragon Compute FastConnect 6700

Snapdragon Snapdragon Compute FastConnect 6900

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.