Memory Corruption Vulnerability in Qualcomm Products
CVE-2026-25263

6.6MEDIUM

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
6 October 2026

What is CVE-2026-25263?

A memory corruption vulnerability exists due to improper handling of IOCTL commands issued from user space to the kernel. When parameters are invalid, this flaw can lead to unexpected behavior, potentially allowing an attacker to exploit the vulnerability. It's crucial for affected users to apply security updates to mitigate risks associated with this vulnerability.

Affected Version(s)

Snapdragon Snapdragon Auto 315 5G IoT Modem

Snapdragon Snapdragon Auto 5G Fixed Wireless Access Platform

Snapdragon Snapdragon Auto Cologne

References

CVSS V3.1

Score:
6.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.