CVE-2025-47368

Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:sc8380xp_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sc8380xp:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*

History

05 Nov 2025, 17:16

Type Values Removed Values Added
First Time Qualcomm wsa8845 Firmware
Qualcomm wsa8845
Qualcomm sc8380xp Firmware
Qualcomm wsa8840 Firmware
Qualcomm wcd9380 Firmware
Qualcomm fastconnect 7800
Qualcomm wsa8840
Qualcomm wsa8845h
Qualcomm sc8380xp
Qualcomm wcd9380
Qualcomm fastconnect 7800 Firmware
Qualcomm wsa8845h Firmware
Qualcomm
Qualcomm fastconnect 6900 Firmware
Qualcomm wcd9385 Firmware
Qualcomm fastconnect 6900
Qualcomm wcd9385
CPE cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sc8380xp:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sc8380xp_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*
References () https://docs.qualcomm.com/product/publicresources/securitybulletin/november-2025-bulletin.html - () https://docs.qualcomm.com/product/publicresources/securitybulletin/november-2025-bulletin.html - Vendor Advisory

04 Nov 2025, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-04 04:15

Updated : 2025-11-05 17:16


NVD link : CVE-2025-47368

Mitre link : CVE-2025-47368

CVE.ORG link : CVE-2025-47368


JSON object : View

Products Affected

qualcomm

  • wsa8845h_firmware
  • wsa8845h
  • fastconnect_7800
  • fastconnect_6900_firmware
  • wcd9385
  • fastconnect_6900
  • fastconnect_7800_firmware
  • wcd9380
  • wsa8840_firmware
  • wsa8840
  • wsa8845_firmware
  • wsa8845
  • wcd9380_firmware
  • sc8380xp_firmware
  • wcd9385_firmware
  • sc8380xp
CWE
CWE-126

Buffer Over-read