Описание
Уязвимость микропрограммного обеспечения встраиваемых плат Qualcomm связана с непроверенным индексированием массива. Эксплуатация уязвимости может позволить нарушителю выполнить произвольный код
Вендор
Qualcomm Technologies Inc.
Наименование ПО
SD 8 Gen1 5G
WCD9380
WSA8830
WSA8835
AQT1000
AR8035
Snapdragon 855 Mobile Platform
Snapdragon 855+/860 Mobile Platform (SM8150-AC)
Snapdragon 865 5G Mobile Platform
Snapdragon 865+ 5G Mobile Platform (SM8250-AB)
Snapdragon 870 5G Mobile Platform (SM8250-AC)
Snapdragon X55 5G Modem-RF System
Snapdragon XR2 5G Platform
Snapdragon X50 5G Modem-RF System
Snapdragon 8 Gen 1 Mobile Platform
Snapdragon 888 5G Mobile Platform
Snapdragon 888+ 5G Mobile Platform (SM8350-AC)
Snapdragon 765 5G Mobile Platform (SM7250-AA)
Snapdragon 765G 5G Mobile Platform (SM7250-AB)
Snapdragon 768G 5G Mobile Platform (SM7250-AC)
Snapdragon 670 Mobile Platform
Snapdragon 675 Mobile Platform
Snapdragon 678 Mobile Platform (SM6150-AC)
Snapdragon 845 Mobile Platform
Snapdragon 850 Mobile Compute Platform
Snapdragon 8c Compute Platform (SC8180X-AD) "Poipu Lite"
Snapdragon 8c Compute Platform (SC8180XP-AD) "Poipu Lite"
Snapdragon 8cx Compute Platform (SC8180X-AA, AB)
Snapdragon 8cx Compute Platform (SC8180XP-AC, AF) "Poipu Pro"
Snapdragon 8cx Gen 2 5G Compute Platform (SC8180X-AC, AF) "Poipu Pro"
Snapdragon 8cx Gen 2 5G Compute Platform (SC8180XP-AA, AB)
Snapdragon 8cx Gen 3 Compute Platform (SC8280XP-AB, BB)
Snapdragon AR2 Gen 1 Platform
Snapdragon X24 LTE Modem
Snapdragon X65 5G Modem-RF System
Qualcomm® Video Collaboration VC3 Platform
Snapdragon 8 Gen 2 Mobile Platform
Snapdragon 8+ Gen 2 Mobile Platform
Snapdragon X75 5G Modem-RF System
SA8770P
QCA6564AU
QCA6574
QCA6574A
QCA6574AU
QCA6584AU
QCA6678AQ
Snapdragon 8 Gen 3 Mobile Platform
Snapdragon Auto 5G Modem-RF Gen 2
Snapdragon X35 5G Modem-RF System
SA8775P
QAM8620P
SA7775P
SA8620P
SA8650P
Snapdragon X62 5G Modem-RF System
Snapdragon X72 5G Modem-RF System
SRV1H
SRV1L
SRV1M
SXR2250P
QCA6688AQ
SA8530P
QCS9100
SM4635
SM8750
SM8750P
WCN7860
WCN7861
WCN7880
WCN7881
FastConnect 6700
FastConnect 6900
FastConnect 7800
WCD9370
WCD9390
WCD9395
WCN3950
WSA8810
WSA8815
WSA8832
WSA8840
WSA8845
WSA8845H
QAM8255P
QAM8295P
QAM8650P
QAM8775P
QAMSRV1H
QAMSRV1M
QCA6595
QCA6595AU
QCA6696
QCA6698AQ
QCA6797AQ
QCA8081
QCA8337
QCC710
QCM5430
QCM6490
QCM8550
QCN6224
QCN6274
QCN9012
QCN9274
QCS5430
QCS6490
QCS8550
QFW7114
QFW7124
SA6155P
SA7255P
SA8155P
SA8195P
SA8255P
SA8295P
SA8540P
SA9000P
SDX55
SM8550P
SXR2230P
SXR2330P
WCD9340
WCD9341
WCD9375
WCD9378
WCD9385
WCN3980
WCN3988
Snapdragon AR1 Gen 1 Platform "Luna1"
Snapdragon AR1 Gen 1 Platform
SM8735
QMP1000
WCN7750
Snapdragon X32 5G Modem-RF System
FastConnect 6200
FastConnect 6800
QCA6174A
QCA6391
QCA6420
QCA6421
QCA6426
QCA6430
QCA6431
QCA6436
QCA6698AU
QCN9011
QCS615
QCS8300
QDU1000
QDU1010
QDU1110
QDU1210
QDX1010
QDX1011
QEP8111
QRU1032
QRU1052
QRU1062
QSM8350
SA6145P
SA6150P
SA6155
SA8145P
SA8150P
SA8155
SC8380XP
SD670
SD855
SD865 5G
SG8275P
SM7250P
SSG2115P
SSG2125P
SXR1230P
SXR2130
WCD9326
WCN3990
Robotics RB3 Platform
SD 675
SD 8CX
SD675
Vision Intelligence 300 Platform
Vision Intelligence 400 Platform
QCA6310
QCA6335
QCA6564A
QCA9377
SDX57M
SDX80M
Версия ПО
- (SD 8 Gen1 5G)
- (WCD9380)
- (WSA8830)
- (WSA8835)
- (AQT1000)
- (AR8035)
- (Snapdragon 855 Mobile Platform)
- (Snapdragon 855+/860 Mobile Platform (SM8150-AC))
- (Snapdragon 865 5G Mobile Platform)
- (Snapdragon 865+ 5G Mobile Platform (SM8250-AB))
- (Snapdragon 870 5G Mobile Platform (SM8250-AC))
- (Snapdragon X55 5G Modem-RF System)
- (Snapdragon XR2 5G Platform)
- (Snapdragon X50 5G Modem-RF System)
- (Snapdragon 8 Gen 1 Mobile Platform)
- (Snapdragon 888 5G Mobile Platform)
- (Snapdragon 888+ 5G Mobile Platform (SM8350-AC))
- (Snapdragon 765 5G Mobile Platform (SM7250-AA))
- (Snapdragon 765G 5G Mobile Platform (SM7250-AB))
- (Snapdragon 768G 5G Mobile Platform (SM7250-AC))
- (Snapdragon 670 Mobile Platform)
- (Snapdragon 675 Mobile Platform)
- (Snapdragon 678 Mobile Platform (SM6150-AC))
- (Snapdragon 845 Mobile Platform)
- (Snapdragon 850 Mobile Compute Platform)
- (Snapdragon 8c Compute Platform (SC8180X-AD) "Poipu Lite")
- (Snapdragon 8c Compute Platform (SC8180XP-AD) "Poipu Lite")
- (Snapdragon 8cx Compute Platform (SC8180X-AA, AB))
- (Snapdragon 8cx Compute Platform (SC8180XP-AC, AF) "Poipu Pro")
- (Snapdragon 8cx Gen 2 5G Compute Platform (SC8180X-AC, AF) "Poipu Pro")
- (Snapdragon 8cx Gen 2 5G Compute Platform (SC8180XP-AA, AB))
- (Snapdragon 8cx Gen 3 Compute Platform (SC8280XP-AB, BB))
- (Snapdragon AR2 Gen 1 Platform)
- (Snapdragon X24 LTE Modem)
- (Snapdragon X65 5G Modem-RF System)
- (Qualcomm® Video Collaboration VC3 Platform)
- (Snapdragon 8 Gen 2 Mobile Platform)
- (Snapdragon 8+ Gen 2 Mobile Platform)
- (Snapdragon X75 5G Modem-RF System)
- (SA8770P)
- (QCA6564AU)
- (QCA6574)
- (QCA6574A)
- (QCA6574AU)
- (QCA6584AU)
- (QCA6678AQ)
- (Snapdragon 8 Gen 3 Mobile Platform)
- (Snapdragon Auto 5G Modem-RF Gen 2)
- (Snapdragon X35 5G Modem-RF System)
- (SA8775P)
- (QAM8620P)
- (SA7775P)
- (SA8620P)
- (SA8650P)
- (Snapdragon X62 5G Modem-RF System)
- (Snapdragon X72 5G Modem-RF System)
- (SRV1H)
- (SRV1L)
- (SRV1M)
- (SXR2250P)
- (QCA6688AQ)
- (SA8530P)
- (QCS9100)
- (SM4635)
- (SM8750)
- (SM8750P)
- (WCN7860)
- (WCN7861)
- (WCN7880)
- (WCN7881)
- (FastConnect 6700)
- (FastConnect 6900)
- (FastConnect 7800)
- (WCD9370)
- (WCD9390)
- (WCD9395)
- (WCN3950)
- (WSA8810)
- (WSA8815)
- (WSA8832)
- (WSA8840)
- (WSA8845)
- (WSA8845H)
- (QAM8255P)
- (QAM8295P)
- (QAM8650P)
- (QAM8775P)
- (QAMSRV1H)
- (QAMSRV1M)
- (QCA6595)
- (QCA6595AU)
- (QCA6696)
- (QCA6698AQ)
- (QCA6797AQ)
- (QCA8081)
- (QCA8337)
- (QCC710)
- (QCM5430)
- (QCM6490)
- (QCM8550)
- (QCN6224)
- (QCN6274)
- (QCN9012)
- (QCN9274)
- (QCS5430)
- (QCS6490)
- (QCS8550)
- (QFW7114)
- (QFW7124)
- (SA6155P)
- (SA7255P)
- (SA8155P)
- (SA8195P)
- (SA8255P)
- (SA8295P)
- (SA8540P)
- (SA9000P)
- (SDX55)
- (SM8550P)
- (SXR2230P)
- (SXR2330P)
- (WCD9340)
- (WCD9341)
- (WCD9375)
- (WCD9378)
- (WCD9385)
- (WCN3980)
- (WCN3988)
- (Snapdragon AR1 Gen 1 Platform "Luna1")
- (Snapdragon AR1 Gen 1 Platform)
- (SM8735)
- (QMP1000)
- (WCN7750)
- (Snapdragon X32 5G Modem-RF System)
- (FastConnect 6200)
- (FastConnect 6800)
- (QCA6174A)
- (QCA6391)
- (QCA6420)
- (QCA6421)
- (QCA6426)
- (QCA6430)
- (QCA6431)
- (QCA6436)
- (QCA6698AU)
- (QCN9011)
- (QCS615)
- (QCS8300)
- (QDU1000)
- (QDU1010)
- (QDU1110)
- (QDU1210)
- (QDX1010)
- (QDX1011)
- (QEP8111)
- (QRU1032)
- (QRU1052)
- (QRU1062)
- (QSM8350)
- (SA6145P)
- (SA6150P)
- (SA6155)
- (SA8145P)
- (SA8150P)
- (SA8155)
- (SC8380XP)
- (SD670)
- (SD855)
- (SD865 5G)
- (SG8275P)
- (SM7250P)
- (SSG2115P)
- (SSG2125P)
- (SXR1230P)
- (SXR2130)
- (WCD9326)
- (WCN3990)
- (Robotics RB3 Platform)
- (SD 675)
- (SD 8CX)
- (SD675)
- (Vision Intelligence 300 Platform)
- (Vision Intelligence 400 Platform)
- (QCA6310)
- (QCA6335)
- (QCA6564A)
- (QCA9377)
- (SDX57M)
- (SDX80M)
Тип ПО
Микропрограммный код
Сетевое средство
Микропрограммный код аппаратных компонент компьютера
Операционные системы и аппаратные платформы
-
Уровень опасности уязвимости
Средний уровень опасности (базовая оценка CVSS 2.0 составляет 4,3)
Средний уровень опасности (базовая оценка CVSS 3.1 составляет 5,3)
Возможные меры по устранению уязвимости
Использование рекомендаций:
https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html
Статус уязвимости
Подтверждена производителем
Наличие эксплойта
Данные уточняются
Информация об устранении
Уязвимость устранена
Идентификаторы других систем описаний уязвимостей
- CVE
EPSS
Процентиль: 3%
0.00017
Низкий
5.3 Medium
CVSS3
4.3 Medium
CVSS2
Связанные уязвимости
CVSS3: 5.3
nvd
7 месяцев назад
Memory corruption while operating the mailbox in Automotive.
CVSS3: 5.3
github
7 месяцев назад
Memory corruption while operating the mailbox in Automotive.
EPSS
Процентиль: 3%
0.00017
Низкий
5.3 Medium
CVSS3
4.3 Medium
CVSS2