Memory Corruption Vulnerability in Qualcomm Products Due to IOCTL Request Issues
CVE-2025-59610

6.4MEDIUM

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
1 June 2026

What is CVE-2025-59610?

This vulnerability arises from a memory corruption issue caused by processing IOCTL requests with mismatched API versions. It is triggered by concurrent modifications of a user-space buffer, potentially allowing an attacker to exploit the flaw, leading to inappropriate access and manipulation of memory. Users of affected Qualcomm products should take precautionary measures to mitigate risks associated with this vulnerability.

Affected Version(s)

Snapdragon Snapdragon Auto 5G Fixed Wireless Access Platform

Snapdragon Snapdragon Auto C-V2X 9150

Snapdragon Snapdragon Auto CSRA6620

References

CVSS V3.1

Score:
6.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.