VDB

CVE-2025-47372

CVE-2025-47372 PUBLISHED CVSS 9 CRITICAL

Memory Corruption when a corrupted ELF image with an oversized file size is read into a buffer without authentication.

EPSS 0.01% · 3.0th percentile

Risk Scores

CVSS v3.1
9
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
EPSS Score
0.01%
3.0th percentile

Affected Products

VendorProductVersions
qualcommqam8650p_firmware
qualcommsa8620p_firmware
qualcommqca6595_firmware
qualcommqam8255p_firmware
qualcommsa7775p_firmware
qualcommqam8620p_firmware
qualcommqca6696_firmware
qualcommsa8650p_firmware
qualcommsa9000p_firmware
qualcommsa8770p_firmware
qualcommqca6797aq_firmware
qualcommsrv1h_firmware
qualcommsrv1l_firmware
qualcommqam8775p_firmware
qualcommqca6698aq_firmware
qualcommqamsrv1m_firmware
Qualcomm, Inc.Snapdragon*, SRV1M, *
qualcommsrv1m_firmware
qualcommqca6595au_firmware
qualcommsa8255p_firmware

…and 4 more

Timeline

  • Dec 1, 2025 PoC Published
  • Dec 1, 2025 PoC Published
  • Dec 2, 2025 PoC Published
  • Dec 2, 2025 PoC Published
  • Dec 2, 2025 CVE Published
  • Dec 2, 2025 PoC Published
  • Dec 18, 2025 EPSS Score
  • Dec 18, 2025 PoC Published
  • Dec 18, 2025 PoC Published
  • Dec 18, 2025 PoC Published
  • Dec 22, 2025 EPSS Score
  • Dec 26, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›