Nixpkgs security tracker

Login with GitHub

Suggestions search

With package: snapdragon-profiler

Found 29 matching suggestions

View:
Compact
Detailed
Dismissed
(not in Nixpkgs)
Permalink CVE-2026-21371
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 1 month, 2 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Buffer Over-read in WinBlast Driver

Memory Corruption when retrieving output buffer with insufficient size validation.

Affected products

Snapdragon
  • ==FastConnect 6800
  • ==X2000092
  • ==QCM5430
  • ==X2000090
  • ==FastConnect 7800
  • ==Snapdragon 8cx Compute Platform "Poipu Pro"
  • ==WSA8815
  • ==Snapdragon 460 Mobile Platform
  • ==WSA8840
  • ==SM6250
  • ==WSA8810
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==XG101039
  • ==Snapdragon 8c Compute Platform "Poipu Lite"
  • ==WSA8835
  • ==XG101032
  • ==X2000094
  • ==QCA6420
  • ==WSA8845H
  • ==WCN3988
  • ==Snapdragon 7c Compute Platform
  • ==Snapdragon 8cx Gen 2 5G Compute Platform "Poipu Pro"
  • ==WCD9380
  • ==Snapdragon 8c Compute Platform (SC8180XP-AD) "Poipu Lite"
  • ==FastConnect 6700
  • ==Snapdragon 8cx Compute Platform
  • ==X2000086
  • ==WCN3950
  • ==QCA0000
  • ==WSA8845
  • ==WCD9378C
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==WCD9375
  • ==WSA8830
  • ==Snapdragon 8cx Gen 2 5G Compute Platform
  • ==Cologne
  • ==QCA6430
  • ==XG101002
  • ==SC8380XP
  • ==WCD9340
  • ==X2000077
  • ==FastConnect 6200
  • ==QCM6490
  • ==FastConnect 6900
  • ==QCA6391
  • ==AQT1000
  • ==Snapdragon 662 Mobile Platform
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==WCD9370
  • ==WCD9385
  • ==Snapdragon 7c Gen 2 Compute Platform "Rennell Pro"
  • ==WCD9341

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-21380
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 1 month, 2 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Use After Free in DSP Service

Memory Corruption when using deprecated DMABUF IOCTL calls to manage video memory.

Affected products

Snapdragon
  • ==X2000092
  • ==X2000090
  • ==FastConnect 7800
  • ==WSA8840
  • ==XG101039
  • ==WSA8835
  • ==XG101032
  • ==X2000094
  • ==WSA8845H
  • ==WCD9380
  • ==X2000086
  • ==WSA8832
  • ==QCA0000
  • ==Snapdragon AR1 Gen 1 Platform
  • ==WSA8845
  • ==WCD9378C
  • ==WSA8830
  • ==Cologne
  • ==XG101002
  • ==SC8380XP
  • ==X2000077
  • ==FastConnect 6900
  • ==WCD9385

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-21381
7.6 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): High (H)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): Required (R)
  • Scope (S): Changed (C)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): High (H)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): Required (R)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Changed (C)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 1 month, 2 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Buffer Over-read in WLAN Firmware

Transient DOS when receiving a service data frame with excessive length during device matching over a neighborhood awareness network protocol connection.

Affected products

Snapdragon
  • ==Snapdragon X72 5G Modem-RF System
  • ==X2000090
  • ==WCD9395
  • ==WSA8815
  • ==XRV9209
  • ==Snapdragon 8 Elite Gen 5
  • ==SAR2130P
  • ==WCN7861
  • ==WCN6755
  • ==SXR2250P
  • ==XRV7209
  • ==Milos
  • ==QXM1086
  • ==WCD9375
  • ==QCC2076
  • ==QCN9012
  • ==XG101002
  • ==Pandeiro
  • ==Snapdragon 8 Elite
  • ==SM7435
  • ==WCN7881
  • ==FastConnect 6200
  • ==FastConnect 6900
  • ==FWA Gen 3 Ultra Platform
  • ==QCA8081
  • ==Snapdragon 7s Gen 3 Mobile Platform
  • ==Snapdragon X75 5G Modem-RF System
  • ==QMP1000
  • ==QCA6698AU
  • ==Orne
  • ==QFW7124
  • ==XG101039
  • ==WSA8835
  • ==Netrani
  • ==QCN6274
  • ==QCS8550
  • ==XG101032
  • ==Snapdragon 6 Gen 4 Mobile Platform
  • ==QPA1083BD
  • ==WCN3988
  • ==Snapdragon AR1+ Gen 1 Platform
  • ==QCA8337
  • ==SM7635P
  • ==Palawan25
  • ==FastConnect 6700
  • ==QLN1086BD
  • ==QCC2073
  • ==WSA8832
  • ==QCN9011
  • ==Snapdragon AR1 Gen 1 Platform
  • ==WCD9378
  • ==WCD9378C
  • ==WSA8845
  • ==QXM1093
  • ==Snapdragon 8 Gen 3 Mobile Platform
  • ==WCD9370
  • ==WCD9385
  • ==SM8635
  • ==X2000092
  • ==WCN7860
  • ==QCA6787AQ
  • ==WSA8810
  • ==QCA6777AQ
  • ==QCA6797AQ
  • ==SM7675P
  • ==QXM1096
  • ==SXR2330P
  • ==QCN6224
  • ==QXM1095
  • ==X2000086
  • ==QFW7114
  • ==WSA8830
  • ==Cologne
  • ==QPA1086BD
  • ==SC8380XP
  • ==X2000077
  • ==WCD9390
  • ==WCN7880
  • ==SM8650Q
  • ==SM8635P
  • ==QXM1094
  • ==AR8035
  • ==SM6650P
  • ==FastConnect 7800
  • ==WCN6650
  • ==WSA8840
  • ==SAR1165P
  • ==X2000094
  • ==QXM1083
  • ==QCC710
  • ==QLN1083BD
  • ==WCN6450
  • ==WSA8845H
  • ==WCD9380
  • ==Snapdragon 6 Gen 1 Mobile Platform
  • ==SXR2230P
  • ==G2 Gen 1
  • ==SM8750P
  • ==SM7675
  • ==SXR2350P
  • ==Snapdragon 6 Gen 3 Mobile Platform
  • ==WCD9340
  • ==QCA6391

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-21367
7.6 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): High (H)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): Required (R)
  • Scope (S): Changed (C)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): High (H)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): Required (R)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Changed (C)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 1 month, 2 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Buffer Over-read in WLAN Firmware

Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes during initial scans.

Affected products

Snapdragon
  • ==Snapdragon X72 5G Modem-RF System
  • ==X2000090
  • ==WCD9395
  • ==WSA8815
  • ==XRV9209
  • ==Snapdragon 8 Elite Gen 5
  • ==QCA9889
  • ==SAR2130P
  • ==WCN7861
  • ==WCN6755
  • ==XRV7209
  • ==Milos
  • ==Networking Pro 400 Platform
  • ==QCN6122
  • ==QCN5052
  • ==Immersive Home 216 Platform
  • ==Networking Pro 600 Platform
  • ==WCD9375
  • ==QCC2076
  • ==IPQ6018
  • ==QCN9012
  • ==QCA8075
  • ==QCN9024
  • ==QCA8085
  • ==QCN5154
  • ==XG101002
  • ==Pandeiro
  • ==Snapdragon 8 Elite
  • ==SM7435
  • ==WCN7881
  • ==FastConnect 6200
  • ==FastConnect 6900
  • ==FWA Gen 3 Ultra Platform
  • ==QCA8081
  • ==Snapdragon 7s Gen 3 Mobile Platform
  • ==Snapdragon X75 5G Modem-RF System
  • ==QMP1000
  • ==QCA6698AU
  • ==QCN9100
  • ==QCA8084
  • ==QCN9070
  • ==QCN6132
  • ==QCN9000
  • ==Orne
  • ==QFW7124
  • ==XG101039
  • ==WSA8835
  • ==QCN6023
  • ==Netrani
  • ==QCN6274
  • ==QCS8550
  • ==XG101032
  • ==Snapdragon 6 Gen 4 Mobile Platform
  • ==QCN5122
  • ==Immersive Home 316 Platform
  • ==QPA1083BD
  • ==Networking Pro 810 Platform
  • ==QCN9022
  • ==IPQ9574
  • ==Snapdragon 8+ Gen 1 Mobile Platform
  • ==WCN3988
  • ==QCA8337
  • ==QCA9888
  • ==SM7635P
  • ==Palawan25
  • ==FastConnect 6700
  • ==QLN1086BD
  • ==QCC2073
  • ==WCN3950
  • ==WSA8832
  • ==IPQ5028
  • ==QCN9011
  • ==WCD9378
  • ==WCD9378C
  • ==WSA8845
  • ==QXM1093
  • ==Snapdragon 8 Gen 3 Mobile Platform
  • ==QCA8082
  • ==WCD9370
  • ==WCD9385
  • ==QCN6024
  • ==SM8635
  • ==X2000092
  • ==Snapdragon 7+ Gen 2 Mobile Platform
  • ==WCN7860
  • ==IPQ6010
  • ==QCN5152
  • ==Snapdragon 7 Gen 1 Mobile Platform
  • ==QCA6787AQ
  • ==Networking Pro 1200 Platform
  • ==WSA8810
  • ==QCA6777AQ
  • ==Networking Pro 800 Platform
  • ==QCA8386
  • ==QCA6797AQ
  • ==QCN5024
  • ==SM7675P
  • ==QXM1096
  • ==QCN9274
  • ==IPQ8078
  • ==SD 8 Gen1 5G
  • ==QCN6224
  • ==QXM1095
  • ==IPQ8076
  • ==X2000086
  • ==Networking Pro 610 Platform
  • ==QFW7114
  • ==Networking Pro 1610 Platform
  • ==WSA8830
  • ==Cologne
  • ==QPA1086BD
  • ==SC8380XP
  • ==IPQ5010
  • ==X2000077
  • ==WCD9390
  • ==WCN7880
  • ==SM8635P
  • ==SM8650Q
  • ==QCN5124
  • ==CSR8811
  • ==AR8035
  • ==QXM1094
  • ==SM6650P
  • ==FastConnect 7800
  • ==WCN6650
  • ==WSA8840
  • ==QCS4490
  • ==X2000094
  • ==QCN5022
  • ==Immersive Home 318 Platform
  • ==QCC710
  • ==QLN1083BD
  • ==WCN6450
  • ==SM8475P
  • ==WSA8845H
  • ==Snapdragon 8 Gen 1 Mobile Platform
  • ==WCD9380
  • ==Snapdragon 6 Gen 1 Mobile Platform
  • ==IPQ6000
  • ==G2 Gen 1
  • ==SM8750P
  • ==QCN5164
  • ==Immersive Home 214 Platform
  • ==QCM4490
  • ==SM7675
  • ==Networking Pro 1210 Platform
  • ==QCA4024
  • ==Snapdragon 6 Gen 3 Mobile Platform
  • ==WCD9340
  • ==QCA6391

Matching in nixpkgs

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-21375
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
updated 1 month, 2 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Buffer Over-read in Camera

Memory Corruption when accessing an output buffer without validating its size during IOCTL processing.

Affected products

Snapdragon
  • ==X2000092
  • ==QCM5430
  • ==X2000090
  • ==FastConnect 7800
  • ==Snapdragon 460 Mobile Platform
  • ==WSA8840
  • ==XG101039
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==WSA8835
  • ==XG101032
  • ==X2000094
  • ==WSA8845H
  • ==WCN3988
  • ==WCD9380
  • ==FastConnect 6700
  • ==X2000086
  • ==WCN3950
  • ==WSA8832
  • ==QCA0000
  • ==Snapdragon AR1 Gen 1 Platform
  • ==WSA8845
  • ==WCD9378C
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==WCD9375
  • ==WSA8830
  • ==Cologne
  • ==XG101002
  • ==SC8380XP
  • ==X2000077
  • ==QCM6490
  • ==WCD9370
  • ==FastConnect 6900
  • ==Snapdragon 662 Mobile Platform
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==WCD9385

Matching in nixpkgs

Untriaged
Permalink CVE-2026-21378
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Buffer Over-read in Camera

Memory Corruption when accessing an output buffer without validating its size during IOCTL processing in a camera sensor driver.

Affected products

Snapdragon
  • ==FastConnect 6800
  • ==X2000092
  • ==QCM5430
  • ==X2000090
  • ==FastConnect 7800
  • ==WSA8815
  • ==Snapdragon 460 Mobile Platform
  • ==WSA8840
  • ==SM6250
  • ==WSA8810
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==XG101039
  • ==Snapdragon 8c Compute Platform "Poipu Lite"
  • ==WSA8835
  • ==XG101032
  • ==X2000094
  • ==QCA6420
  • ==WSA8845H
  • ==WCN3988
  • ==Snapdragon 7c Compute Platform
  • ==Snapdragon 8cx Gen 2 5G Compute Platform "Poipu Pro"
  • ==WCD9380
  • ==FastConnect 6700
  • ==Snapdragon 8cx Compute Platform
  • ==X2000086
  • ==WCN3950
  • ==WSA8832
  • ==QCA0000
  • ==Snapdragon AR1 Gen 1 Platform
  • ==WSA8845
  • ==WCD9378C
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==WCD9375
  • ==WSA8830
  • ==Cologne
  • ==QCA6430
  • ==XG101002
  • ==SC8380XP
  • ==WCD9340
  • ==X2000077
  • ==FastConnect 6200
  • ==QCM6490
  • ==FastConnect 6900
  • ==QCA6391
  • ==AQT1000
  • ==Snapdragon 662 Mobile Platform
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==WCD9370
  • ==WCD9385
  • ==Snapdragon 7c Gen 2 Compute Platform "Rennell Pro"
  • ==WCD9341

Matching in nixpkgs

Untriaged
Permalink CVE-2025-47391
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Stack-based Buffer Overflow in Camera Driver

Memory corruption while processing a frame request from user.

Affected products

Snapdragon
  • ==WCD9395
  • ==WSA8815
  • ==Snapdragon 8 Elite Gen 5
  • ==WCN7861
  • ==WCN6755
  • ==LeMans_AU_LGIT
  • ==SM7550P
  • ==Milos
  • ==SA8255P
  • ==QAM8397P
  • ==WCD9375
  • ==QCN9012
  • ==Pandeiro
  • ==Snapdragon 8 Elite
  • ==SM7435
  • ==WCN7881
  • ==FastConnect 6200
  • ==FastConnect 6900
  • ==Snapdragon 7s Gen 3 Mobile Platform
  • ==Monaco_IOT
  • ==QMP1000
  • ==QCM5430
  • ==SM8550P
  • ==QCA6698AU
  • ==WCD9371
  • ==Orne
  • ==WSA8835
  • ==Netrani
  • ==QCS8550
  • ==Snapdragon 6 Gen 4 Mobile Platform
  • ==LeMansAU
  • ==Snapdragon 8+ Gen 1 Mobile Platform
  • ==WCN3988
  • ==SM7635P
  • ==Palawan25
  • ==FastConnect 6700
  • ==IQ8 Series Platform
  • ==WCN3950
  • ==WSA8832
  • ==QCN9011
  • ==Snapdragon AR1 Gen 1 Platform
  • ==WCD9378
  • ==QCA8695AU
  • ==WSA8845
  • ==Snapdragon 8 Gen 3 Mobile Platform
  • ==WCD9370
  • ==WCD9385
  • ==SM8635
  • ==Snapdragon 7+ Gen 2 Mobile Platform
  • ==WCN7860
  • ==SRV1H
  • ==Snapdragon 7 Gen 1 Mobile Platform
  • ==WSA8810
  • ==QCA6595AU
  • ==QCA6797AQ
  • ==SM7675P
  • ==Snapdragon 8 Gen 2 Mobile Platform
  • ==SD 8 Gen1 5G
  • ==Snapdragon 4 Gen 2 Mobile Platform
  • ==QAMSRV1M
  • ==WSA8830
  • ==SA7255P
  • ==QCM6490
  • ==WCD9390
  • ==QAM8255P
  • ==WCN7880
  • ==Snapdragon 8+ Gen 2 Mobile Platform
  • ==SM8650Q
  • ==SM8635P
  • ==IQ9 Series Platform
  • ==SM6650P
  • ==FastConnect 7800
  • ==WCN6650
  • ==WSA8840
  • ==QCS4490
  • ==QAMSRV1H
  • ==SRV1M
  • ==SA8770P
  • ==WSA8845H
  • ==WCN6450
  • ==SM8475P
  • ==QCA6595
  • ==Snapdragon 8 Gen 1 Mobile Platform
  • ==SA8620P
  • ==WCD9380
  • ==Snapdragon 6 Gen 1 Mobile Platform
  • ==QCA6698AQ
  • ==SA9000P
  • ==G2 Gen 1
  • ==SM8750P
  • ==QCM4490
  • ==SM7675
  • ==SA7775P
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==SM7550
  • ==QCA6678AQ
  • ==Snapdragon 6 Gen 3 Mobile Platform
  • ==QCA6391
  • ==IQ6 Series Platform

Matching in nixpkgs

Untriaged
Permalink CVE-2026-21373
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Buffer Over-read in Camera

Memory Corruption when accessing an output buffer without validating its size during IOCTL processing.

Affected products

Snapdragon
  • ==FastConnect 6800
  • ==X2000092
  • ==QCM5430
  • ==X2000090
  • ==FastConnect 7800
  • ==Snapdragon 8cx Compute Platform "Poipu Pro"
  • ==WSA8815
  • ==Snapdragon 460 Mobile Platform
  • ==WSA8840
  • ==SM6250
  • ==WSA8810
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==XG101039
  • ==Snapdragon 8c Compute Platform "Poipu Lite"
  • ==WSA8835
  • ==XG101032
  • ==X2000094
  • ==QCA6420
  • ==WSA8845H
  • ==WCN3988
  • ==Snapdragon 7c Compute Platform
  • ==Snapdragon 8cx Gen 2 5G Compute Platform "Poipu Pro"
  • ==WCD9380
  • ==Snapdragon 8c Compute Platform (SC8180XP-AD) "Poipu Lite"
  • ==FastConnect 6700
  • ==Snapdragon 8cx Compute Platform
  • ==X2000086
  • ==WCN3950
  • ==WSA8832
  • ==QCA0000
  • ==Snapdragon AR1 Gen 1 Platform
  • ==WSA8845
  • ==WCD9378C
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==WCD9375
  • ==WSA8830
  • ==Snapdragon 8cx Gen 2 5G Compute Platform
  • ==Cologne
  • ==QCA6430
  • ==XG101002
  • ==SC8380XP
  • ==WCD9340
  • ==X2000077
  • ==FastConnect 6200
  • ==QCM6490
  • ==FastConnect 6900
  • ==QCA6391
  • ==AQT1000
  • ==Snapdragon 662 Mobile Platform
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==WCD9370
  • ==WCD9385
  • ==Snapdragon 7c Gen 2 Compute Platform "Rennell Pro"
  • ==WCD9341

Matching in nixpkgs

Untriaged
Permalink CVE-2025-47374
6.5 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): High (H)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): Low (L)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): High (H)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): Low (L)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Use After Free in Camera Driver

Memory Corruption when accessing freed memory due to concurrent fence deregistration and signal handling.

Affected products

Snapdragon
  • ==QXM1094
  • ==WCN7860
  • ==FastConnect 7800
  • ==XRV9209
  • ==SAR1165P
  • ==SAR2130P
  • ==WSA8835
  • ==WCN7861
  • ==QPA1083BD
  • ==QXM1083
  • ==QXM1096
  • ==QLN1083BD
  • ==SXR2250P
  • ==Snapdragon AR1+ Gen 1 Platform
  • ==WCD9380
  • ==SXR2330P
  • ==XRV7209
  • ==QLN1086BD
  • ==SXR2230P
  • ==QXM1095
  • ==WSA8832
  • ==Snapdragon AR1 Gen 1 Platform
  • ==QXM1093
  • ==QXM1086
  • ==WSA8830
  • ==QPA1086BD
  • ==SXR2350P
  • ==Pandeiro
  • ==FastConnect 6900
  • ==WCD9385

Matching in nixpkgs

Untriaged
Permalink CVE-2025-47400
7.1 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): None (N)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Buffer Over-read in Computer Vision

Cryptographic issue while copying data to a destination buffer without validating its size.

Affected products

Snapdragon
  • ==Themisto
  • ==WCN7861
  • ==WCN7860
  • ==Pandeiro
  • ==WCD9395
  • ==SW6100
  • ==WSA8845H
  • ==WSA8845
  • ==Snapdragon 8 Elite Gen 5
  • ==WSA8840
  • ==SW6100P

Matching in nixpkgs