Out-of-Bounds Memory Access in Qualcomm Products
CVE-2026-25282

7.9HIGH

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
17 September 2026

What is CVE-2026-25282?

This vulnerability involves a transient denial of service condition triggered by the improper handling of unverified data originating from a neighboring system. Exploiting this flaw may lead to unexpected behavior in affected Qualcomm products, potentially allowing attackers to access or manipulate memory in unauthorized ways.

Affected Version(s)

Snapdragon Snapdragon Compute Cologne

Snapdragon Snapdragon Compute FastConnect 7800

Snapdragon Snapdragon Compute Snapdragon X2 Elite

References

CVSS V3.1

Score:
7.9
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.