๐Ÿ” CVE Alert

CVE-2025-21428

HIGH 7.5

Buffer Over-read in WLAN Host

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session.

CWE CWE-126
Vendor qualcomm, inc.
Product snapdragon
Published Apr 7, 2025
Last Updated Feb 26, 2026
Stay Ahead of the Next One

Get instant alerts for qualcomm, inc. snapdragon

Be the first to know when new high vulnerabilities affecting qualcomm, inc. snapdragon are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High

Affected Versions

Qualcomm, Inc. / Snapdragon
9206 LTE Modem APQ8017 AR8031 C-V2X 9150 CSRA6620 CSRA6640 FastConnect 6200 FastConnect 6900 MDM9250 MDM9628 MDM9640 MDM9650 MSM8996AU QCA6174 QCA6174A QCA6175A QCA6554A QCA6564A QCA6564AU QCA6574 QCA6574A QCA6574AU QCA6584 QCA6584AU QCA6595 QCA6595AU QCA6696 QCA9367 QCA9377 QCA9379 QCM2150 QEP8111 Qualcomm 205 Mobile Platform Qualcomm 215 Mobile Platform SA2150P SD626 SDM429W Smart Audio 200 Platform Smart Audio 400 Platform Smart Display 200 Platform (APQ5053-AA) Snapdragon 1200 Wearable Platform Snapdragon 210 Processor Snapdragon 212 Mobile Platform Snapdragon 425 Mobile Platform Snapdragon 429 Mobile Platform Snapdragon 439 Mobile Platform Snapdragon 625 Mobile Platform Snapdragon 626 Mobile Platform Snapdragon 632 Mobile Platform Snapdragon 820 Automotive Platform Snapdragon Auto 5G Modem-RF Snapdragon X12 LTE Modem Snapdragon X35 5G Modem-RF System Snapdragon X5 LTE Modem Vision Intelligence 100 Platform (APQ8053-AA) Vision Intelligence 200 Platform (APQ8053-AC) WCD9326 WCD9330 WCD9335 WCD9340 WCN3610 WCN3615 WCN3620 WCN3660B WCN3680 WCN3680B WCN3980 WSA8810 WSA8815

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
docs.qualcomm.com: https://docs.qualcomm.com/product/publicresources/securitybulletin/april-2025-bulletin.html