CVE-2025-47329

Sept. 25, 2025, 3:58 p.m.

7.8
High

Description

Memory corruption while handling invalid inputs in application info setup.

Product(s) Impacted

Vendor Product Versions
Qualcomm
  • Fastconnect 7800 Firmware
  • Fastconnect 7800
  • Qam8255p Firmware
  • Qam8255p
  • Qam8775p Firmware
  • Qam8775p
  • Qca6574 Firmware
  • Qca6574
  • Qca6574a Firmware
  • Qca6574a
  • Qca6574au Firmware
  • Qca6574au
  • Qca6595 Firmware
  • Qca6595
  • Qca6595au Firmware
  • Qca6595au
  • Qca6696 Firmware
  • Qca6696
  • Qcm6690 Firmware
  • Qcm6690
  • Qcs6690 Firmware
  • Qcs6690
  • Sa6155p Firmware
  • Sa6155p
  • Sa8155p Firmware
  • Sa8155p
  • Sa8195p Firmware
  • Sa8195p
  • Sa8255p Firmware
  • Sa8255p
  • Sa8770p Firmware
  • Sa8770p
  • Sa8775p Firmware
  • Sa8775p
  • Sa9000p Firmware
  • Sa9000p
  • Snapdragon 8 Gen 3 Mobile Platform Firmware
  • Snapdragon 8 Gen 3 Mobile Platform
  • Snapdragon Ar1 Gen 1 Platform Firmware
  • Snapdragon Ar1 Gen 1 Platform
  • Snapdragon Ar1 Gen 1 Platform \"luna1\" Firmware
  • Snapdragon Ar1 Gen 1 Platform \"luna1\"
  • Snapdragon W5\+ Gen 1 Wearable Platform Firmware
  • Snapdragon W5\+ Gen 1 Wearable Platform
  • Sw5100 Firmware
  • Sw5100
  • Sw5100p Firmware
  • Sw5100p
  • Wcd9380 Firmware
  • Wcd9380
  • Wcd9385 Firmware
  • Wcd9385
  • Wcd9390 Firmware
  • Wcd9390
  • Wcd9395 Firmware
  • Wcd9395
  • Wcn6450 Firmware
  • Wcn6450
  • Wcn6755 Firmware
  • Wcn6755
  • Wcn7861 Firmware
  • Wcn7861
  • Wcn7881 Firmware
  • Wcn7881
  • Wsa8830 Firmware
  • Wsa8830
  • Wsa8832 Firmware
  • Wsa8832
  • Wsa8835 Firmware
  • Wsa8835
  • Wsa8840 Firmware
  • Wsa8840
  • Wsa8845 Firmware
  • Wsa8845
  • Wsa8845h Firmware
  • Wsa8845h
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -

Weaknesses

Common security weaknesses mapped to this vulnerability.

CWE-763
Release of Invalid Pointer or Reference
The product attempts to return a memory resource to the system, but it calls the wrong release function or calls the appropriate release function incorrectly.

*CPE(s)

Affected systems and software identified for this CVE.

Type Vendor Product Version Update Edition Language Software Edition Target Software Target Hardware Other Information
o qualcomm fastconnect_7800_firmware - / / / / / / /
h qualcomm fastconnect_7800 - / / / / / / /
o qualcomm qam8255p_firmware - / / / / / / /
h qualcomm qam8255p - / / / / / / /
o qualcomm qam8775p_firmware - / / / / / / /
h qualcomm qam8775p - / / / / / / /
o qualcomm qca6574_firmware - / / / / / / /
h qualcomm qca6574 - / / / / / / /
o qualcomm qca6574a_firmware - / / / / / / /
h qualcomm qca6574a - / / / / / / /
o qualcomm qca6574au_firmware - / / / / / / /
h qualcomm qca6574au - / / / / / / /
o qualcomm qca6595_firmware - / / / / / / /
h qualcomm qca6595 - / / / / / / /
o qualcomm qca6595au_firmware - / / / / / / /
h qualcomm qca6595au - / / / / / / /
o qualcomm qca6696_firmware - / / / / / / /
h qualcomm qca6696 - / / / / / / /
o qualcomm qcm6690_firmware - / / / / / / /
h qualcomm qcm6690 - / / / / / / /
o qualcomm qcs6690_firmware - / / / / / / /
h qualcomm qcs6690 - / / / / / / /
o qualcomm sa6155p_firmware - / / / / / / /
h qualcomm sa6155p - / / / / / / /
o qualcomm sa8155p_firmware - / / / / / / /
h qualcomm sa8155p - / / / / / / /
o qualcomm sa8195p_firmware - / / / / / / /
h qualcomm sa8195p - / / / / / / /
o qualcomm sa8255p_firmware - / / / / / / /
h qualcomm sa8255p - / / / / / / /
o qualcomm sa8770p_firmware - / / / / / / /
h qualcomm sa8770p - / / / / / / /
o qualcomm sa8775p_firmware - / / / / / / /
h qualcomm sa8775p - / / / / / / /
o qualcomm sa9000p_firmware - / / / / / / /
h qualcomm sa9000p - / / / / / / /
o qualcomm snapdragon_8_gen_3_mobile_platform_firmware - / / / / / / /
h qualcomm snapdragon_8_gen_3_mobile_platform - / / / / / / /
o qualcomm snapdragon_ar1_gen_1_platform_firmware - / / / / / / /
h qualcomm snapdragon_ar1_gen_1_platform - / / / / / / /
o qualcomm snapdragon_ar1_gen_1_platform_\"luna1\"_firmware - / / / / / / /
h qualcomm snapdragon_ar1_gen_1_platform_\"luna1\" - / / / / / / /
o qualcomm snapdragon_w5\+_gen_1_wearable_platform_firmware - / / / / / / /
h qualcomm snapdragon_w5\+_gen_1_wearable_platform - / / / / / / /
o qualcomm sw5100_firmware - / / / / / / /
h qualcomm sw5100 - / / / / / / /
o qualcomm sw5100p_firmware - / / / / / / /
h qualcomm sw5100p - / / / / / / /
o qualcomm wcd9380_firmware - / / / / / / /
h qualcomm wcd9380 - / / / / / / /
o qualcomm wcd9385_firmware - / / / / / / /
h qualcomm wcd9385 - / / / / / / /
o qualcomm wcd9390_firmware - / / / / / / /
h qualcomm wcd9390 - / / / / / / /
o qualcomm wcd9395_firmware - / / / / / / /
h qualcomm wcd9395 - / / / / / / /
o qualcomm wcn6450_firmware - / / / / / / /
h qualcomm wcn6450 - / / / / / / /
o qualcomm wcn6755_firmware - / / / / / / /
h qualcomm wcn6755 - / / / / / / /
o qualcomm wcn7861_firmware - / / / / / / /
h qualcomm wcn7861 - / / / / / / /
o qualcomm wcn7881_firmware - / / / / / / /
h qualcomm wcn7881 - / / / / / / /
o qualcomm wsa8830_firmware - / / / / / / /
h qualcomm wsa8830 - / / / / / / /
o qualcomm wsa8832_firmware - / / / / / / /
h qualcomm wsa8832 - / / / / / / /
o qualcomm wsa8835_firmware - / / / / / / /
h qualcomm wsa8835 - / / / / / / /
o qualcomm wsa8840_firmware - / / / / / / /
h qualcomm wsa8840 - / / / / / / /
o qualcomm wsa8845_firmware - / / / / / / /
h qualcomm wsa8845 - / / / / / / /
o qualcomm wsa8845h_firmware - / / / / / / /
h qualcomm wsa8845h - / / / / / / /

CVSS Score

7.8 / 10

CVSS Data - 3.1

  • Attack Vector: LOCAL
  • Attack Complexity: LOW
  • Privileges Required: LOW
  • Scope: UNCHANGED
  • Confidentiality Impact: HIGH
  • Integrity Impact: HIGH
  • Availability Impact: HIGH
  • CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

    View Vector String

Timeline

Published: Sept. 24, 2025, 4:15 p.m.
Last Modified: Sept. 25, 2025, 3:58 p.m.

Status : Analyzed

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

product-security@qualcomm.com

*Disclaimer: Some vulnerabilities do not have an associated CPE. To enhance the data, we use AI to infer CPEs based on CVE details. This is an automated process and might not always be accurate.