CVE-2025-47396

7.8

Qualcomm · Snapdragon and Video Collaboration Platforms

A memory corruption vulnerability exists in various Qualcomm platforms, specifically a double free flaw triggered when launching secure applications under low memory conditions.

Executive summary

A high-severity memory corruption vulnerability in multiple Qualcomm platforms poses a significant risk of local privilege escalation or system instability.

Vulnerability

This vulnerability is a double free (CWE-415) memory corruption flaw. It requires an attacker to possess local, low-level user privileges to trigger the condition during the launch of a secure application.

Business impact

The vulnerability carries a CVSS score of 7.8, indicating a high risk to system integrity, confidentiality, and availability. Successful exploitation allows a local attacker to potentially gain elevated privileges or cause a denial of service, which could disrupt secure communications or compromise sensitive data processed by the affected Qualcomm hardware components.

Remediation

Immediate Action: Review the official January 2026 Qualcomm security bulletin and apply the relevant firmware or driver updates provided by your specific device manufacturer.

Proactive Monitoring: Monitor system logs for unexpected application crashes or kernel panics, which may indicate attempted exploitation of memory corruption vulnerabilities.

Compensating Controls: Ensure that device security policies restrict local access to untrusted users and maintain strict control over the execution of secure applications.

Exploitation status

Public Exploit Available: Unknown

Analyst recommendation

Given the technical nature of this memory corruption flaw and its potential impact on system security, organizations utilizing the affected Qualcomm hardware must prioritize the deployment of vendor-supplied patches. While no active exploitation has been observed, the high CVSS severity necessitates prompt action to mitigate the risk of local privilege escalation.

More Qualcomm CVEs

Sources