CVE-2025-47323
7.8Qualcomm · Snapdragon
A memory corruption vulnerability in Qualcomm Snapdragon products occurs when routing GPR packets between user and root modes during large data packet handling.
Executive summary
A high-severity memory corruption vulnerability in various Qualcomm Snapdragon components allows local authenticated attackers to achieve potential system compromise.
Vulnerability
This flaw is identified as an integer overflow (CWE-190) that leads to memory corruption. The vulnerability requires local access and low-level privileges to trigger, allowing the processing of malformed or oversized GPR packets to corrupt memory space.
Business impact
The vulnerability carries a CVSS score of 7.8, reflecting its potential for total impact on confidentiality, integrity, and availability. Successful exploitation allows a local attacker to execute arbitrary code or cause system instability, which could lead to unauthorized data access or complete device compromise. Given the ubiquity of these Snapdragon components, the risk to mobile and embedded infrastructure is significant.
Remediation
Immediate Action: Consult the official Qualcomm December 2025 Security Bulletin and apply the latest firmware updates provided by the device manufacturer or original equipment manufacturer (OEM).
Proactive Monitoring: Monitor system logs for unusual kernel-level crashes, unexpected reboots, or unauthorized process execution attempts that might indicate exploitation of memory corruption flaws.
Compensating Controls: Implement strict device access controls and ensure that only authorized applications are permitted to interact with low-level packet routing interfaces.
Exploitation status
Public Exploit Available: Unknown.
Analyst recommendation
Organizations utilizing devices equipped with the affected Qualcomm hardware should prioritize the identification of current firmware versions and coordinate with their vendors to obtain necessary patches. While exploitation is currently not observed in the wild, the severity of the potential impact necessitates prompt action once patches become available through the respective supply chain channels.