Nixpkgs security tracker

Login with GitHub

Suggestions search

With package: snapdragon-profiler

Found 13 matching suggestions

View:
Compact
Detailed
Permalink CVE-2026-21378
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Buffer Over-read in Camera

Memory Corruption when accessing an output buffer without validating its size during IOCTL processing in a camera sensor driver.

Affected products

Snapdragon
  • ==FastConnect 6800
  • ==X2000092
  • ==QCM5430
  • ==X2000090
  • ==FastConnect 7800
  • ==WSA8815
  • ==Snapdragon 460 Mobile Platform
  • ==WSA8840
  • ==SM6250
  • ==WSA8810
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==XG101039
  • ==Snapdragon 8c Compute Platform "Poipu Lite"
  • ==WSA8835
  • ==XG101032
  • ==X2000094
  • ==QCA6420
  • ==WSA8845H
  • ==WCN3988
  • ==Snapdragon 7c Compute Platform
  • ==Snapdragon 8cx Gen 2 5G Compute Platform "Poipu Pro"
  • ==WCD9380
  • ==FastConnect 6700
  • ==Snapdragon 8cx Compute Platform
  • ==X2000086
  • ==WCN3950
  • ==WSA8832
  • ==QCA0000
  • ==Snapdragon AR1 Gen 1 Platform
  • ==WSA8845
  • ==WCD9378C
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==WCD9375
  • ==WSA8830
  • ==Cologne
  • ==QCA6430
  • ==XG101002
  • ==SC8380XP
  • ==WCD9340
  • ==X2000077
  • ==FastConnect 6200
  • ==QCM6490
  • ==FastConnect 6900
  • ==QCA6391
  • ==AQT1000
  • ==Snapdragon 662 Mobile Platform
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==WCD9370
  • ==WCD9385
  • ==Snapdragon 7c Gen 2 Compute Platform "Rennell Pro"
  • ==WCD9341

Matching in nixpkgs

Permalink CVE-2025-47391
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Stack-based Buffer Overflow in Camera Driver

Memory corruption while processing a frame request from user.

Affected products

Snapdragon
  • ==WCD9395
  • ==WSA8815
  • ==Snapdragon 8 Elite Gen 5
  • ==WCN7861
  • ==WCN6755
  • ==LeMans_AU_LGIT
  • ==SM7550P
  • ==Milos
  • ==SA8255P
  • ==QAM8397P
  • ==WCD9375
  • ==QCN9012
  • ==Pandeiro
  • ==Snapdragon 8 Elite
  • ==SM7435
  • ==WCN7881
  • ==FastConnect 6200
  • ==FastConnect 6900
  • ==Snapdragon 7s Gen 3 Mobile Platform
  • ==Monaco_IOT
  • ==QMP1000
  • ==QCM5430
  • ==SM8550P
  • ==QCA6698AU
  • ==WCD9371
  • ==Orne
  • ==WSA8835
  • ==Netrani
  • ==QCS8550
  • ==Snapdragon 6 Gen 4 Mobile Platform
  • ==LeMansAU
  • ==Snapdragon 8+ Gen 1 Mobile Platform
  • ==WCN3988
  • ==SM7635P
  • ==Palawan25
  • ==FastConnect 6700
  • ==IQ8 Series Platform
  • ==WCN3950
  • ==WSA8832
  • ==QCN9011
  • ==Snapdragon AR1 Gen 1 Platform
  • ==WCD9378
  • ==QCA8695AU
  • ==WSA8845
  • ==Snapdragon 8 Gen 3 Mobile Platform
  • ==WCD9370
  • ==WCD9385
  • ==SM8635
  • ==Snapdragon 7+ Gen 2 Mobile Platform
  • ==WCN7860
  • ==SRV1H
  • ==Snapdragon 7 Gen 1 Mobile Platform
  • ==WSA8810
  • ==QCA6595AU
  • ==QCA6797AQ
  • ==SM7675P
  • ==Snapdragon 8 Gen 2 Mobile Platform
  • ==SD 8 Gen1 5G
  • ==Snapdragon 4 Gen 2 Mobile Platform
  • ==QAMSRV1M
  • ==WSA8830
  • ==SA7255P
  • ==QCM6490
  • ==WCD9390
  • ==QAM8255P
  • ==WCN7880
  • ==Snapdragon 8+ Gen 2 Mobile Platform
  • ==SM8650Q
  • ==SM8635P
  • ==IQ9 Series Platform
  • ==SM6650P
  • ==FastConnect 7800
  • ==WCN6650
  • ==WSA8840
  • ==QCS4490
  • ==QAMSRV1H
  • ==SRV1M
  • ==SA8770P
  • ==WSA8845H
  • ==WCN6450
  • ==SM8475P
  • ==QCA6595
  • ==Snapdragon 8 Gen 1 Mobile Platform
  • ==SA8620P
  • ==WCD9380
  • ==Snapdragon 6 Gen 1 Mobile Platform
  • ==QCA6698AQ
  • ==SA9000P
  • ==G2 Gen 1
  • ==SM8750P
  • ==QCM4490
  • ==SM7675
  • ==SA7775P
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==SM7550
  • ==QCA6678AQ
  • ==Snapdragon 6 Gen 3 Mobile Platform
  • ==QCA6391
  • ==IQ6 Series Platform

Matching in nixpkgs

Permalink CVE-2026-21373
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Buffer Over-read in Camera

Memory Corruption when accessing an output buffer without validating its size during IOCTL processing.

Affected products

Snapdragon
  • ==FastConnect 6800
  • ==X2000092
  • ==QCM5430
  • ==X2000090
  • ==FastConnect 7800
  • ==Snapdragon 8cx Compute Platform "Poipu Pro"
  • ==WSA8815
  • ==Snapdragon 460 Mobile Platform
  • ==WSA8840
  • ==SM6250
  • ==WSA8810
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==XG101039
  • ==Snapdragon 8c Compute Platform "Poipu Lite"
  • ==WSA8835
  • ==XG101032
  • ==X2000094
  • ==QCA6420
  • ==WSA8845H
  • ==WCN3988
  • ==Snapdragon 7c Compute Platform
  • ==Snapdragon 8cx Gen 2 5G Compute Platform "Poipu Pro"
  • ==WCD9380
  • ==Snapdragon 8c Compute Platform (SC8180XP-AD) "Poipu Lite"
  • ==FastConnect 6700
  • ==Snapdragon 8cx Compute Platform
  • ==X2000086
  • ==WCN3950
  • ==WSA8832
  • ==QCA0000
  • ==Snapdragon AR1 Gen 1 Platform
  • ==WSA8845
  • ==WCD9378C
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==WCD9375
  • ==WSA8830
  • ==Snapdragon 8cx Gen 2 5G Compute Platform
  • ==Cologne
  • ==QCA6430
  • ==XG101002
  • ==SC8380XP
  • ==WCD9340
  • ==X2000077
  • ==FastConnect 6200
  • ==QCM6490
  • ==FastConnect 6900
  • ==QCA6391
  • ==AQT1000
  • ==Snapdragon 662 Mobile Platform
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==WCD9370
  • ==WCD9385
  • ==Snapdragon 7c Gen 2 Compute Platform "Rennell Pro"
  • ==WCD9341

Matching in nixpkgs

Permalink CVE-2025-47374
6.5 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): High (H)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): Low (L)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): High (H)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): Low (L)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Use After Free in Camera Driver

Memory Corruption when accessing freed memory due to concurrent fence deregistration and signal handling.

Affected products

Snapdragon
  • ==QXM1094
  • ==WCN7860
  • ==FastConnect 7800
  • ==XRV9209
  • ==SAR1165P
  • ==SAR2130P
  • ==WSA8835
  • ==WCN7861
  • ==QPA1083BD
  • ==QXM1083
  • ==QXM1096
  • ==QLN1083BD
  • ==SXR2250P
  • ==Snapdragon AR1+ Gen 1 Platform
  • ==WCD9380
  • ==SXR2330P
  • ==XRV7209
  • ==QLN1086BD
  • ==SXR2230P
  • ==QXM1095
  • ==WSA8832
  • ==Snapdragon AR1 Gen 1 Platform
  • ==QXM1093
  • ==QXM1086
  • ==WSA8830
  • ==QPA1086BD
  • ==SXR2350P
  • ==Pandeiro
  • ==FastConnect 6900
  • ==WCD9385

Matching in nixpkgs

Permalink CVE-2025-47400
7.1 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): None (N)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Buffer Over-read in Computer Vision

Cryptographic issue while copying data to a destination buffer without validating its size.

Affected products

Snapdragon
  • ==Themisto
  • ==WCN7861
  • ==WCN7860
  • ==Pandeiro
  • ==WCD9395
  • ==SW6100
  • ==WSA8845H
  • ==WSA8845
  • ==Snapdragon 8 Elite Gen 5
  • ==WSA8840
  • ==SW6100P

Matching in nixpkgs

Permalink CVE-2025-47392
8.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Adjacent (A)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Adjacent (A)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Integer Overflow or Wraparound in GPS

Memory corruption when decoding corrupted satellite data files with invalid signature offsets.

Affected products

Snapdragon
  • ==Snapdragon X53 5G Modem-RF System
  • ==FastConnect 6800
  • ==Snapdragon X72 5G Modem-RF System
  • ==Snapdragon X35 5G Modem-RF System
  • ==WCD9335
  • ==WCD9395
  • ==SW5100P
  • ==WSA8815
  • ==Snapdragon 460 Mobile Platform
  • ==Snapdragon 4 Gen 1 Mobile Platform
  • ==WCN7861
  • ==WCN6755
  • ==Snapdragon 865 5G Mobile Platform
  • ==SM7550P
  • ==Milos
  • ==QCS4290
  • ==FSM20055
  • ==SDX61
  • ==SW6100
  • ==WCN3980
  • ==SW5100
  • ==WCD9375
  • ==QCN9012
  • ==QCN9024
  • ==Themisto
  • ==Snapdragon 8 Elite
  • ==SM7435
  • ==Snapdragon X65 5G Modem-RF System
  • ==FastConnect 6200
  • ==WCN7881
  • ==FastConnect 6900
  • ==FWA Gen 3 Ultra Platform
  • ==QCA8081
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==SM7325P
  • ==Snapdragon 7s Gen 3 Mobile Platform
  • ==QCM2290
  • ==WCD9341
  • ==Snapdragon 480 5G Mobile Platform
  • ==Snapdragon X75 5G Modem-RF System
  • ==QMP1000
  • ==QCM5430
  • ==SM8550P
  • ==Snapdragon 888 5G Mobile Platform
  • ==QCA6698AU
  • ==WCD9371
  • ==SM6250
  • ==Orne
  • ==QFW7124
  • ==Snapdragon 685 4G Mobile Platform
  • ==WSA8835
  • ==Netrani
  • ==QCN6274
  • ==QCS8550
  • ==Snapdragon 6 Gen 4 Mobile Platform
  • ==Snapdragon 778G+ 5G Mobile Platform
  • ==Snapdragon 8+ Gen 1 Mobile Platform
  • ==WCN3988
  • ==QCA8337
  • ==SM7635P
  • ==Snapdragon 865+ 5G Mobile Platform
  • ==Snapdragon 690 5G Mobile Platform
  • ==Snapdragon Auto 5G Modem-RF Gen 2
  • ==Palawan25
  • ==FastConnect 6700
  • ==WCN3950
  • ==WSA8832
  • ==QCN9011
  • ==WCD9378
  • ==WSA8845
  • ==QCA6688AQ
  • ==SM6225P
  • ==Robotics RB2 Platform
  • ==Snapdragon 8 Gen 3 Mobile Platform
  • ==WCD9370
  • ==Snapdragon X55 5G Modem-RF System
  • ==Snapdragon 662 Mobile Platform
  • ==WCD9385
  • ==SDX57M
  • ==QCN6024
  • ==SM8635
  • ==QCA6696
  • ==Snapdragon 7+ Gen 2 Mobile Platform
  • ==WCN7860
  • ==Snapdragon X70 Modem-RF System
  • ==Snapdragon X32 5G Modem-RF System
  • ==Snapdragon 7 Gen 1 Mobile Platform
  • ==WSA8810
  • ==SD662
  • ==QCA6595AU
  • ==QCA6797AQ
  • ==SM7675P
  • ==QCA6574A
  • ==Snapdragon 8 Gen 2 Mobile Platform
  • ==SD 8 Gen1 5G
  • ==Snapdragon X80 5G Modem-RF System
  • ==QCN6224
  • ==Snapdragon 4 Gen 2 Mobile Platform
  • ==QFW7114
  • ==QCS2290
  • ==Snapdragon 480+ 5G Mobile Platform
  • ==SW6100P
  • ==WSA8830
  • ==QEP8111
  • ==QCM6490
  • ==WCD9390
  • ==WCN7880
  • ==Snapdragon 8+ Gen 2 Mobile Platform
  • ==Snapdragon 7c Gen 2 Compute Platform "Rennell Pro"
  • ==QCA6174A
  • ==SM8650Q
  • ==SM8635P
  • ==CSRA6620
  • ==G1 Gen 1
  • ==5G Fixed Wireless Access Platform
  • ==AR8035
  • ==SM6650P
  • ==FastConnect 7800
  • ==Snapdragon 778G 5G Mobile Platform
  • ==WCD9360
  • ==WCN6650
  • ==WSA8840
  • ==QCS4490
  • ==Snapdragon 888+ 5G Mobile Platform
  • ==Snapdragon 870 5G Mobile Platform
  • ==Snapdragon Auto 5G Modem-RF
  • ==WCN3910
  • ==Snapdragon W5+ Gen 1 Wearable Platform
  • ==QCC710
  • ==WSA8845H
  • ==SM8475P
  • ==Snapdragon 7c Compute Platform
  • ==Snapdragon 8 Gen 1 Mobile Platform
  • ==WCD9380
  • ==Snapdragon 6 Gen 1 Mobile Platform
  • ==QCA6698AQ
  • ==Snapdragon 680 4G Mobile Platform
  • ==Snapdragon 695 5G Mobile Platform
  • ==SM8750P
  • ==QCM4490
  • ==QCA6574AU
  • ==SM7675
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==FSM200 Platform
  • ==SM7550
  • ==QCM4325
  • ==QCA6584AU
  • ==QCA6678AQ
  • ==CSRA6640
  • ==Snapdragon 6 Gen 3 Mobile Platform
  • ==WCD9340
  • ==QCA6391
  • ==SDX71M
  • ==Snapdragon 782G Mobile Platform

Matching in nixpkgs

Permalink CVE-2025-47390
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Buffer Over-read in Camera

Memory corruption while preprocessing IOCTL request in JPEG driver.

Affected products

Snapdragon
  • ==X2000092
  • ==QCM5430
  • ==X2000090
  • ==FastConnect 7800
  • ==WSA8840
  • ==XG101039
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==WSA8835
  • ==XG101032
  • ==X2000094
  • ==WSA8845H
  • ==WCD9380
  • ==FastConnect 6700
  • ==X2000086
  • ==QCA0000
  • ==WSA8845
  • ==WCD9378C
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==WCD9375
  • ==WSA8830
  • ==Cologne
  • ==XG101002
  • ==SC8380XP
  • ==X2000077
  • ==QCM6490
  • ==WCD9370
  • ==FastConnect 6900
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==WCD9385

Matching in nixpkgs

Permalink CVE-2026-21376
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Buffer Over-read in Camera

Memory Corruption when accessing an output buffer without validating its size during IOCTL processing in a camera sensor driver.

Affected products

Snapdragon
  • ==FastConnect 6800
  • ==X2000092
  • ==QCM5430
  • ==X2000090
  • ==FastConnect 7800
  • ==Snapdragon 8cx Compute Platform "Poipu Pro"
  • ==WSA8815
  • ==Snapdragon 460 Mobile Platform
  • ==WSA8840
  • ==SM6250
  • ==WSA8810
  • ==Snapdragon 8cx Gen 3 Compute Platform
  • ==XG101039
  • ==Snapdragon 8c Compute Platform "Poipu Lite"
  • ==WSA8835
  • ==XG101032
  • ==X2000094
  • ==QCA6420
  • ==WSA8845H
  • ==WCN3988
  • ==Snapdragon 7c Compute Platform
  • ==Snapdragon 8cx Gen 2 5G Compute Platform "Poipu Pro"
  • ==WCD9380
  • ==Snapdragon 8c Compute Platform (SC8180XP-AD) "Poipu Lite"
  • ==FastConnect 6700
  • ==Snapdragon 8cx Compute Platform
  • ==X2000086
  • ==WCN3950
  • ==WSA8832
  • ==QCA0000
  • ==Snapdragon AR1 Gen 1 Platform
  • ==WSA8845
  • ==WCD9378C
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==WCD9375
  • ==WSA8830
  • ==Snapdragon 8cx Gen 2 5G Compute Platform
  • ==Cologne
  • ==QCA6430
  • ==XG101002
  • ==SC8380XP
  • ==WCD9340
  • ==X2000077
  • ==FastConnect 6200
  • ==QCM6490
  • ==FastConnect 6900
  • ==QCA6391
  • ==AQT1000
  • ==Snapdragon 662 Mobile Platform
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==WCD9370
  • ==WCD9385
  • ==Snapdragon 7c Gen 2 Compute Platform "Rennell Pro"
  • ==WCD9341

Matching in nixpkgs

Permalink CVE-2026-21372
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Heap-Based Buffer Overflow in Power Management IC

Memory Corruption when sending IOCTL requests with invalid buffer sizes during memcpy operations.

Affected products

Snapdragon
  • ==X2000092
  • ==QCM5430
  • ==X2000090
  • ==FastConnect 7800
  • ==Snapdragon 460 Mobile Platform
  • ==WSA8840
  • ==XG101039
  • ==XG101032
  • ==X2000094
  • ==WSA8845H
  • ==WCN3988
  • ==WCD9380
  • ==FastConnect 6700
  • ==X2000086
  • ==WCN3950
  • ==WSA8845
  • ==WCD9378C
  • ==Qualcomm Video Collaboration VC3 Platform
  • ==WCD9375
  • ==Cologne
  • ==XG101002
  • ==X2000077
  • ==QCM6490
  • ==WCD9370
  • ==FastConnect 6900
  • ==Snapdragon 662 Mobile Platform
  • ==Snapdragon 7c+ Gen 3 Compute
  • ==WCD9385

Matching in nixpkgs

Permalink CVE-2026-21382
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 2 weeks ago Activity log
  • Created suggestion
Buffer Copy Without Checking Size of Input in Power Management IC

Memory Corruption when handling power management requests with improperly sized input/output buffers.

Affected products

Snapdragon
  • ==X2000092
  • ==X2000090
  • ==FastConnect 7800
  • ==WSA8840
  • ==XG101039
  • ==XG101032
  • ==X2000094
  • ==WSA8845H
  • ==WCD9380
  • ==X2000086
  • ==QCA0000
  • ==WSA8845
  • ==WCD9378C
  • ==Cologne
  • ==XG101002
  • ==SC8380XP
  • ==X2000077
  • ==FastConnect 6900
  • ==WCD9385

Matching in nixpkgs