CVE-2026-21367

7.6

Qualcomm · Snapdragon (AR8035, Cologne, CSR8811, FastConnect 6200, FastConnect 6700, FastConnect 6900, FastConnect 7800, FWA Gen 3 Ultra Platform)

A buffer over-read vulnerability exists in various Qualcomm Snapdragon products, allowing for a transient denial of service when processing nonstandard FILS Discovery Frames.

Executive summary

A buffer over-read vulnerability in multiple Qualcomm Snapdragon platforms may result in a transient denial of service, presenting a moderate risk to system availability.

Vulnerability

This is a buffer over-read (CWE-126) triggered during the processing of nonstandard FILS Discovery Frames with out-of-range action sizes. The CVSS vector indicates that exploitation requires high privileges and specific interaction, limiting the attack surface to authenticated administrative users.

Business impact

The vulnerability carries a CVSS score of 7.6, indicating a high severity risk primarily due to the potential for denial of service. While the impact on confidentiality and integrity is rated as high in the vector, the requirement for high privileges and network conditions makes successful exploitation difficult to execute. Organizations relying on these Snapdragon components for critical connectivity should prioritize this issue to prevent unplanned service interruptions.

Remediation

Immediate Action: Review the official Qualcomm security bulletin for April 2026 and apply the recommended firmware or driver updates as soon as they become available for your specific hardware platform.

Proactive Monitoring: Monitor system logs for unusual diagnostic events or unexpected reboots associated with wireless interface drivers or scanning processes.

Compensating Controls: Ensure that network devices are segmented to limit exposure, and restrict administrative access to the affected hardware components to minimize the risk of privilege escalation.

Exploitation status

Public Exploit Available: Unknown.

Analyst recommendation

Given the potential for denial of service, administrators should track the status of vendor patches closely via the Qualcomm security portal. While the complexity of the attack vector provides some natural mitigation, applying official vendor updates remains the only definitive method to eliminate the underlying buffer over-read flaw.

More Qualcomm CVEs

Sources