CVE-2025-27033Medium· 6.1▾ SunlitInformation disclosure while running video usecase having rogue firmware.
▾ Sunlit zone — Low / medium · no exploitation signal
impact 33.6 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.08%
Information disclosure while running video usecase having rogue firmware.
qcm5430_firmwareqcm6490_firmwareqcs5430_firmwareqcs6490_firmwareqcm8550_firmwareqcs8550_firmwareqcs615_firmwareqcs9100_firmwaresm6650_firmwaresm7635_firmwaresm8650_firmwaresm8650p_firmwaresm8650q_firmwaresm7675_firmwaresm7675p_firmwaresm8635_firmwaresm8635p_firmwaresm8750_firmwaresm8750p_firmwaresxr2330p_firmwarewcn6750_firmwarewcn6856_firmwareqcn9274_firmwarewcn7851_firmwareqca6698aq_firmwarewcn6650_firmwarewcn6755_firmwarewcn7850_firmwarewcn7880_firmwarewcn7860_firmwarewcn7861_firmwarewcn7881_firmwareRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-27036Medium· 6.1Information disclosure when Video engine escape input data is less than expected minimum size.
CVE-2025-27030Medium· 6.1information disclosure while invoking calibration data from user space to update firmware size.
CVE-2025-21488High· 8.2Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.
CVE-2025-21487High· 8.2Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.
CVE-2025-21484High· 8.2Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet.
CVE-2025-21482High· 7.1Cryptographic issue while performing RSA PKCS padding decoding.