CVE-2025-47389High· 7.8▾ TwilightMemory corruption when buffer copy operation fails due to integer overflow during attestation report generation.
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 42.9 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.10%
Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation.
ar8035_firmwarecologne_firmwarecsra6620_firmwarecsra6640_firmwarefastconnect_6200_firmwaresnapdragon_x35_5g_modem-rf_system_firmwaresnapdragon_x53_5g_modem-rf_system_firmwaresnapdragon_x55_5g_modem-rf_system_firmwaresnapdragon_x72_5g_modem-rf_system_firmwaresnapdragon_x75_5g_modem-rf_system_firmwaresnapdragon_xr2+_gen_1_platform_firmwaresnapdragon_xr2_5g_platform_firmwaresrv1h_firmwaresrv1l_firmwaresrv1m_firmwaresw6100_firmwaresw6100p_firmwaresxr2330p_firmwaresxr2350p_firmwarethemisto_firmwarevideo_collaboration_vc1_platform_firmwarevideo_collaboration_vc3_platform_firmwarewcd9335_firmwarewcd9340_firmwarewcd9370_firmwarewcd9375_firmwarewcd9378_firmwarewcd9378c_firmwarewcd9380_firmwarewcd9385_firmwarewcd9390_firmwarewcd9395_firmwarewcn3910_firmwarewcn3950_firmwarewcn3980_firmwarewcn3988_firmwarewcn6450_firmwarewcn6650_firmwarewcn6755_firmwarewcn7860_firmwarewcn7861_firmwarewcn7880_firmwarewcn7881_firmwarewsa8810_firmwarewsa8815_firmwarefastconnect_6700_firmwarefastconnect_6800_firmwarefastconnect_6900_firmwarefastconnect_7800_firmwarefwa_gen_3_ultra_firmwareg2_gen_1_firmwareiq-615_firmwareiq-8275_firmwareiq-8300_firmwareiq-9075_firmwareiq-9100_firmwarelemans_au_lgit_firmwarelemansau_firmwaremilos_firmwaremonaco_iot_firmwarenetrani_firmwareorne_firmwarepalawan25_firmwarepandeiro_firmwareqam8255p_firmwareqam8295p_firmwareqam8397p_firmwareqam8620p_firmwareqamsrv1h_firmwareqamsrv1m_firmwareqca6174a_firmwareqca6391_firmwareqca6574_firmwareqca6574a_firmwareqca6574au_firmwareqca6584au_firmwareqca6595_firmwareqca6595au_firmwareqca6678aq_firmwareqca6688aq_firmwareqca6696_firmwareqca6698aq_firmwareqca6797aq_firmwareqca8081_firmwareqca8337_firmwarewsa8830_firmwarewsa8832_firmwarewsa8835_firmwarewsa8840_firmwarewsa8845_firmwarewsa8845h_firmwarex2000077_firmwarex2000086_firmwarex2000090_firmwarex2000092_firmwarex2000094_firmwarexg101002_firmwarexg101032_firmwarexg101039_firmwarexrv7209_firmwareRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-47404Medium· 6.5Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified.
CVE-2025-47400High· 7.1Cryptographic issue while copying data to a destination buffer without validating its size.
CVE-2025-47392High· 8.8Memory corruption when decoding corrupted satellite data files with invalid signature offsets.
CVE-2025-47391High· 7.8Memory corruption while processing a frame request from user.
CVE-2025-47390High· 7.8Memory corruption while preprocessing IOCTL request in JPEG driver.
CVE-2025-47374Medium· 6.5Memory Corruption when accessing freed memory due to concurrent fence deregistration and signal handling.