Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing.
References
| Link | Resource |
|---|---|
| https://docs.qualcomm.com/product/publicresources/securitybulletin/november-2025-bulletin.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
Configuration 4 (hide)
| AND |
|
Configuration 5 (hide)
| AND |
|
Configuration 6 (hide)
| AND |
|
Configuration 7 (hide)
| AND |
|
Configuration 8 (hide)
| AND |
|
History
05 Nov 2025, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Qualcomm wsa8845 Firmware
Qualcomm wsa8845 Qualcomm sc8380xp Firmware Qualcomm wsa8840 Firmware Qualcomm wcd9380 Firmware Qualcomm fastconnect 7800 Qualcomm wsa8840 Qualcomm wsa8845h Qualcomm sc8380xp Qualcomm wcd9380 Qualcomm fastconnect 7800 Firmware Qualcomm wsa8845h Firmware Qualcomm Qualcomm fastconnect 6900 Firmware Qualcomm wcd9385 Firmware Qualcomm fastconnect 6900 Qualcomm wcd9385 |
|
| CPE | cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sc8380xp:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sc8380xp_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:* |
|
| References | () https://docs.qualcomm.com/product/publicresources/securitybulletin/november-2025-bulletin.html - Vendor Advisory |
04 Nov 2025, 04:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-04 04:15
Updated : 2025-11-05 17:16
NVD link : CVE-2025-47368
Mitre link : CVE-2025-47368
CVE.ORG link : CVE-2025-47368
JSON object : View
Products Affected
qualcomm
- wsa8845h_firmware
- wsa8845h
- fastconnect_7800
- fastconnect_6900_firmware
- wcd9385
- fastconnect_6900
- fastconnect_7800_firmware
- wcd9380
- wsa8840_firmware
- wsa8840
- wsa8845_firmware
- wsa8845
- wcd9380_firmware
- sc8380xp_firmware
- wcd9385_firmware
- sc8380xp
CWE
CWE-126
Buffer Over-read
