CVE-2025-21458

Memory corruption when IOCTL interface is called to map and unmap buffers simultaneously.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:qam8255p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qam8255p:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:qam8650p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qam8650p:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:qam8775p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qam8775p:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:qca6174a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6174a:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:qca6698aq_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6698aq:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:qca6797aq_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6797aq:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:qualcomm:sa7255p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa7255p:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:qualcomm:sa7775p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa7775p:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:qualcomm:sa8255p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8255p:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:qualcomm:sa8620p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8620p:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:qualcomm:sa8650p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8650p:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:qualcomm:sa8775p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8775p:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:qualcomm:sa9000p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa9000p:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_888_5g_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_888_5g_mobile_platform:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_888\+_5g_mobile_platform_\(sm8350-ac\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_888\+_5g_mobile_platform_\(sm8350-ac\):-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:qualcomm:sw5100_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sw5100:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:qualcomm:sw5100p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sw5100p:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:qualcomm:wcn3980_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:qualcomm:wcn3988_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3988:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*

History

19 Aug 2025, 13:21

Type Values Removed Values Added
Summary (es) Corrupción de memoria cuando se llama a la interfaz IOCTL para mapear y desasignar buffers simultáneamente. (es) Corrupción de memoria cuando se llama a la interfaz IOCTL para mapear y desasignar búferes simultáneamente.
CPE cpe:2.3:h:qualcomm:snapdragon_888\+_5g_mobile_platform_\(sm8350-ac\):-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sw5100:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8255p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8650p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6797aq:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8255p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qam8650p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qam8650p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6174a:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8775p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8620p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3988_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sw5100_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6698aq_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qam8775p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qam8255p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6174a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6797aq_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6698aq:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3988:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa9000p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qam8255p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3980_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_888_5g_mobile_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa7775p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa9000p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa7255p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sw5100p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa7255p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8775p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_888\+_5g_mobile_platform_\(sm8350-ac\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sw5100p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8650p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8620p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qam8775p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa7775p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_888_5g_mobile_platform_firmware:-:*:*:*:*:*:*:*
References () https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html - () https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html - Vendor Advisory, Patch
First Time Qualcomm sa8620p Firmware
Qualcomm sa7775p Firmware
Qualcomm wcn3980
Qualcomm wcn3988
Qualcomm qca6698aq Firmware
Qualcomm snapdragon 888\+ 5g Mobile Platform \(sm8350-ac\)
Qualcomm wsa8835
Qualcomm sa8775p
Qualcomm sa7255p
Qualcomm qca6174a
Qualcomm qam8650p
Qualcomm sw5100p
Qualcomm fastconnect 6900 Firmware
Qualcomm qam8775p
Qualcomm sw5100 Firmware
Qualcomm wsa8830
Qualcomm wcd9385
Qualcomm sa8620p
Qualcomm wcn3980 Firmware
Qualcomm qam8255p Firmware
Qualcomm wcn3988 Firmware
Qualcomm snapdragon 888\+ 5g Mobile Platform \(sm8350-ac\) Firmware
Qualcomm qam8255p
Qualcomm sa7255p Firmware
Qualcomm sa9000p Firmware
Qualcomm
Qualcomm sa9000p
Qualcomm wsa8835 Firmware
Qualcomm wcd9380
Qualcomm sa8255p Firmware
Qualcomm qca6174a Firmware
Qualcomm qca6797aq
Qualcomm sw5100
Qualcomm sw5100p Firmware
Qualcomm sa8650p
Qualcomm wsa8830 Firmware
Qualcomm snapdragon 888 5g Mobile Platform
Qualcomm snapdragon 888 5g Mobile Platform Firmware
Qualcomm qca6797aq Firmware
Qualcomm sa8775p Firmware
Qualcomm wcd9380 Firmware
Qualcomm sa8255p
Qualcomm fastconnect 6900
Qualcomm sa7775p
Qualcomm sa8650p Firmware
Qualcomm wcd9385 Firmware
Qualcomm qca6698aq
Qualcomm qam8650p Firmware
Qualcomm qam8775p Firmware

06 Aug 2025, 20:23

Type Values Removed Values Added
Summary
  • (es) Corrupción de memoria cuando se llama a la interfaz IOCTL para mapear y desasignar buffers simultáneamente.

06 Aug 2025, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-06 08:15

Updated : 2025-08-19 13:21


NVD link : CVE-2025-21458

Mitre link : CVE-2025-21458

CVE.ORG link : CVE-2025-21458


JSON object : View

Products Affected

qualcomm

  • qam8775p
  • sa7255p_firmware
  • qam8255p
  • qca6797aq
  • wcd9380_firmware
  • sw5100p_firmware
  • sa8255p
  • sa8620p
  • sa8620p_firmware
  • wcd9385_firmware
  • wsa8830
  • qam8775p_firmware
  • wcn3980
  • qam8650p_firmware
  • qca6174a_firmware
  • snapdragon_888_5g_mobile_platform_firmware
  • sa9000p
  • snapdragon_888\+_5g_mobile_platform_\(sm8350-ac\)
  • sa7775p
  • sa8775p
  • qca6174a
  • sa7775p_firmware
  • snapdragon_888\+_5g_mobile_platform_\(sm8350-ac\)_firmware
  • sa8775p_firmware
  • qca6698aq
  • qam8255p_firmware
  • wsa8835
  • sw5100p
  • sa7255p
  • sa9000p_firmware
  • sa8650p
  • fastconnect_6900
  • qca6797aq_firmware
  • sw5100_firmware
  • wcn3988
  • wcn3988_firmware
  • wsa8835_firmware
  • fastconnect_6900_firmware
  • sw5100
  • qca6698aq_firmware
  • wcd9385
  • qam8650p
  • sa8650p_firmware
  • wcd9380
  • wcn3980_firmware
  • snapdragon_888_5g_mobile_platform
  • wsa8830_firmware
  • sa8255p_firmware
CWE
CWE-416

Use After Free