CVE-2025-47369Medium· 5.5▾ SunlitInformation disclosure when a weak hashed value is returned to userland code in response to a IOCTL call to obtain a session ID.
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.08%
Information disclosure when a weak hashed value is returned to userland code in response to a IOCTL call to obtain a session ID.
ar8035_firmwarecsra6620_firmwarecsra6640_firmwarefastconnect_6200_firmwarefastconnect_6700_firmwaresnapdragon_w5+_gen_1_wearable_platform_firmwaresnapdragon_x12_lte_modem_firmwaresnapdragon_x55_5g_modem-rf_system_firmwaresnapdragon_x65_5g_modem-rf_system_firmwaresnapdragon_xr2_5g_platform_firmwaresnapdragon_xr2+_gen_1_platform_firmwaressg2115p_firmwaressg2125p_firmwaresw5100_firmwaresw5100p_firmwaresxr1230p_firmwaresxr2230p_firmwaresxr2250p_firmwaresxr2330p_firmwaresxr2350p_firmwarewcd9326_firmwarewcd9335_firmwarewcd9341_firmwarewcd9370_firmwarewcd9371_firmwarewcd9375_firmwarewcd9378_firmwarewcd9380_firmwarewcd9385_firmwarewcd9390_firmwarewcd9395_firmwarewcn3615_firmwarewcn3660b_firmwarewcn3680b_firmwarewcn3910_firmwarewcn3950_firmwarewcn3980_firmwarewcn3988_firmwarewcn3990_firmwarewcn6650_firmwarewcn6740_firmwarewcn6755_firmwarewcn7750_firmwarewcn7860_firmwarewcn7861_firmwarefastconnect_6800_firmwarefastconnect_6900_firmwarefastconnect_7800_firmwareflight_rb5_5g_platform_firmwaremdm9628_firmwareqam8295p_firmwareqca6174a_firmwareqca6391_firmwareqca6564a_firmwareqca6564au_firmwareqca6574_firmwareqca6574a_firmwareqca6574au_firmwareqca6595au_firmwareqca6696_firmwareqca6698aq_firmwareqca6698au_firmwareqca6797aq_firmwareqca8081_firmwareqca8337_firmwareqca9377_firmwareqcm2290_firmwareqcm4490_firmwareqcm5430_firmwareqcm6490_firmwareqcn6024_firmwareqcn9011_firmwareqcn9012_firmwareqcn9024_firmwareqcs2290_firmwareqcs410_firmwareqcs4490_firmwareqcs5430_firmwareqcs610_firmwareqcs615_firmwareqcs6490_firmwareqcs7230_firmwareqcs8550_firmwareqcs9100_firmwareqmp1000_firmwarewcn7880_firmwarewcn7881_firmwarewsa8810_firmwarewsa8815_firmwarewsa8830_firmwarewsa8832_firmwarewsa8835_firmwarewsa8840_firmwarewsa8845_firmwarewsa8845h_firmwareqrb5165m_firmwareqrb5165n_firmwarequalcomm_215_mobile_platform_firmwarevideo_collaboration_vc1_platform_firmwarevideo_collaboration_vc3_platform_firmwareRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-47389High· 7.8Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation.
CVE-2025-47396High· 7.8Memory corruption occurs when a secure application is launched on a device with insufficient memory.
CVE-2025-47395Medium· 6.5Transient DOS while parsing a WLAN management frame with a Vendor Specific Information Element.
CVE-2025-47394High· 7.8Memory corruption when copying overlapping buffers during memory operations due to incorrect offset calculations.
CVE-2025-47393High· 7.8Memory corruption when accessing resources in kernel driver.
CVE-2025-47388High· 7.8Memory corruption while passing pages to DSP with an unaligned starting address.