Dismissed
Permalink
CVE-2025-47378
7.1 HIGH
- CVSS version: 3.1
- Attack vector (AV): LOCAL
- Attack complexity (AC): LOW
- Privileges required (PR): LOW
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): HIGH
- Availability impact (A): NONE
by @LeSuisse Activity log
- Created automatic suggestion
- @LeSuisse removed package snapdragon-profiler
- @LeSuisse dismissed
Exposure of Sensitive System Information to an Unauthorized Control Sphere in HLOS
Cryptographic Issue when a shared VM reference allows HLOS to boot loader and access cert chain.
Affected products
Snapdragon
- ==QLN1086BD
- ==X2000092
- ==X2000094
- ==FastConnect 6700
- ==Snapdragon XR2 5G Platform
- ==Snapdragon XR2+ Gen 1 Platform
- ==WCD9378C
- ==Snapdragon X55 5G Modem-RF System
- ==FastConnect 7800
- ==QAM8255P
- ==QXM1083
- ==QCA6797AQ
- ==Pandeiro
- ==QPA1083BD
- ==SXR2230P
- ==SXR2250P
- ==WSA8830
- ==WSA8845
- ==X2000090
- ==QCA6696
- ==SA8620P
- ==WSA8810
- ==WSA8840
- ==Snapdragon 870 5G Mobile Platform
- ==LeMansAU
- ==QXM1096
- ==Snapdragon AR1 Gen 1 Platform
- ==QCA6595AU
- ==QCA6595
- ==SAR2230P
- ==QXM1095
- ==X2000086
- ==SD865 5G
- ==SA8255P
- ==SRV1M
- ==Cologne
- ==QAMSRV1M
- ==WCD9395
- ==Snapdragon AR1+ Gen 1 Platform
- ==Snapdragon 865+ 5G Mobile Platform
- ==SAR1250P
- ==WSA8815
- ==XG101039
- ==XG101032
- ==X2000077
- ==WCD9385
- ==QLN1083BD
- ==SA9000P
- ==SAR1165P
- ==SA7255P
- ==WCN7861
- ==QXM1094
- ==Snapdragon 865 5G Mobile Platform
- ==WCN7860
- ==SA8770P
- ==WSA8832
- ==WCD9380
- ==QCA6698AQ
- ==QXM1093
- ==FastConnect 6800
- ==SRV1H
- ==SA7775P
- ==QPA1086BD
- ==SAR2130P
- ==WSA8835
- ==LeMans_AU_LGIT
- ==FastConnect 6900
- ==QCA6391
- ==QXM1086
- ==Snapdragon 8 Elite Gen 5
- ==WCN3950
- ==WSA8845H
- ==QAMSRV1H
- ==XG101002