Get real-time updates on Telegram
CVE-2026-25291: Snapdragon FastConnect 6700, FastConnect 6900, FastConnect 7800, LeMans_AU_LGIT, LeMansAU, Orne, Pandeiro, QAM8255P…
CVE-2026-25291. CVSS 3.1 base score 7.8 (ghsa).
Affected technology
Snapdragon · FastConnect 6700, FastConnect 6900, FastConnect 7800, LeMans_AU_LGIT, LeMansAU, Orne, Pandeiro, QAM8255P, QAM8295P, QAMSRV1H, QAMSRV1M, QCA6391, QCA6574AU, QCA6595, QCA6696, QCA6698AQ, QCA6797AQ, QCM4290, QCM5430, QCM6490, QCM8838, QCS4290, QLN1083BD, QLN1086BD, QPA1083BD, QPA1086BD, Qualcomm Dragonwing Q-8845, Qualcomm Video Collaboration VC3 Platform, QXM1083, QXM1086, QXM1093, QXM1094, QXM1095, QXM1096, SA7255P, SA7775P, SA8155P, SA8255P, SA8295P, SA8620P, SA8770P, SA9000P, SAR1165P, SC8380XP, SD662, SDR753, SM6225P, SM7325P, Snapdragon 460 Mobile Platform, Snapdragon 662 Mobile Platform, Snapdragon 680 4G Mobile Platform, Snapdragon 685 4G Mobile Platform, Snapdragon 778G 5G Mobile Platform, Snapdragon 778G+ 5G Mobile Platform, Snapdragon 782G Mobile Platform, Snapdragon 7c+ Gen 3 Compute, Snapdragon 8 Elite Gen 5, Snapdragon 888 5G Mobile Platform, Snapdragon 888+ 5G Mobile Platform, Snapdragon AR1 Gen 1 Platform, Snapdragon AR1+ Gen 1 Platform, Snapdragon W5+ Gen 1 Wearable Platform, Snapdragon X53 5G Modem-RF System, Snapdragon Reality Elite Platform, Snapdragon Wear Elite platform, SRV1H, SRV1M, SW5100, SW5100P, Themisto, WCD9370, WCD9375, WCD9378, WCD9380, WCD9385, WCD9395, WCN3950, WCN3988, WCN7860, WCN7861, WSA8810, WSA8830, WSA8832, WSA8835, WSA8840, WSA8845, WSA8845H, X1E80100, XRV7209, XRV9209
Qualcomm, Inc.
Component: Not specified by the source
Attack conditions (Vendor/CNA, CVSS 3.1): Local · Low privileges required · No user interaction required
What an attacker can do
Vendor/CNA’s CVSS 3.1 assessment (base score 7.8/10) rates confidentiality, integrity and availability impact as high. The description does not specify what an attacker can achieve beyond these rated impacts.
- CWE
- CWE-416
- CCR priority
- 31.2 /100 (P4)
- CVSS 3.1
- 7.8 /10 · CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H · Vendor/CNA
- KEV
- no
Provenance
- GitHub Advisory Database · Source record · observed 2026-10-06 10:41:36.128766+00:00 UTC
- NVD CVE API 2.0 · Source record · observed 2026-10-06 17:55:17.257073+00:00 UTC
Stable permalink: https://cybercodered.org/item/cve-cve-2026-25291.html