๐Ÿ” CVE Alert

CVE-2025-21456

HIGH 7.8

Use After Free in NPU

CVSS Score
7.8
EPSS Score
0.0%
EPSS Percentile
0th

Memory corruption while processing IOCTL command when multiple threads are called to map/unmap buffer concurrently.

CWE CWE-416
Vendor qualcomm, inc.
Product snapdragon
Published Aug 6, 2025
Last Updated Feb 26, 2026
Stay Ahead of the Next One

Get instant alerts for qualcomm, inc. snapdragon

Be the first to know when new high vulnerabilities affecting qualcomm, inc. snapdragon are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

Qualcomm, Inc. / Snapdragon
AR8035 C-V2X 9150 FastConnect 6900 FastConnect 7800 QAM8255P QAM8295P QAM8650P QAM8775P QCA6174A QCA6574AU QCA6584AU QCA6696 QCA6698AQ QCA6797AQ QCA8081 QCA8337 QCC710 QCN6224 QCN6274 QCS410 QCS610 QFW7114 QFW7124 Qualcomm Video Collaboration VC1 Platform Qualcomm Video Collaboration VC3 Platform SA6145P SA6150P SA6155P SA7255P SA7775P SA8145P SA8150P SA8155P SA8195P SA8255P SA8295P SA8530P SA8540P SA8620P SA8650P SA8775P SA9000P Snapdragon 888 5G Mobile Platform Snapdragon 888+ 5G Mobile Platform (SM8350-AC) Snapdragon Auto 5G Modem-RF Gen 2 Snapdragon W5+ Gen 1 Wearable Platform Snapdragon X72 5G Modem-RF System Snapdragon X75 5G Modem-RF System SW5100 SW5100P WCD9340 WCD9341 WCD9370 WCD9380 WCD9385 WCN3660B WCN3680B WCN3950 WCN3980 WCN3988 WSA8810 WSA8815 WSA8830 WSA8835

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
docs.qualcomm.com: https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html