CVE-2025-21438

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
07/04/2025
Last modified:
03/10/2025

Description

Memory corruption while IOCTL call is invoked from user-space to read board data.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:qualcomm:fastconnect_6200_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6200:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6700_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6700:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6164_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6164:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6174_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6174:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6174a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6174a:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6595au_firmware:-:*:*:*:*:*:*:*