Privilege Escalation Vulnerability in Qualcomm's Product Due to Weak Temporary File Handling
CVE-2026-25265

8.8HIGH

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
22 September 2026

What is CVE-2026-25265?

A privilege escalation vulnerability exists in Qualcomm’s products arising from inadequate configuration during the handling of temporary files. This weakness could allow an attacker to gain unauthorized access to elevated privileges, potentially leading to further exploitation of system resources or sensitive data. Proper measures and configurations must be implemented to mitigate this risk and enhance overall system security.

Affected Version(s)

Snapdragon Qualcomm Software Center QSCv1.17.1

Snapdragon Qualcomm Software Center QSCv1.19.1

Snapdragon Qualcomm Software Center QSCv1.21.0

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.