CVE-2025-47394High· 7.8▾ TwilightMemory corruption when copying overlapping buffers during memory operations due to incorrect offset calculations.
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 42.9 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.08%
Memory corruption when copying overlapping buffers during memory operations due to incorrect offset calculations.
fastconnect_6200_firmwarefastconnect_6700_firmwarefastconnect_6900_firmwarefastconnect_7800_firmwareqcs610_firmwareqmp1000_firmwaresg6150_firmwaresg6150p_firmwaresm6475_firmwaresm7435_firmwaresm8735_firmwaresm8750_firmwaresm8750p_firmwaresnapdragon_4_gen_2_mobile_platform_firmwaresnapdragon_6_gen_1_mobile_platform_firmwaresnapdragon_w5+_gen_1_wearable_platform_firmwaresw5100_firmwaresw5100p_firmwaresxr2330p_firmwaresxr2350p_firmwarevideo_collaboration_vc1_platform_firmwarevideo_collaboration_vc3_platform_firmwarewcd9370_firmwarewcd9375_firmwarewcd9378_firmwarewcd9380_firmwarewcd9385_firmwarewcd9395_firmwarewcn3950_firmwarewcn3980_firmwarewcn3988_firmwarewcn6755_firmwarewcn7750_firmwarewcn7860_firmwarewcn7861_firmwarewcn7880_firmwarewcn7881_firmwarewsa8810_firmwarewsa8815_firmwarewsa8830_firmwarewsa8832_firmwarewsa8835_firmwarewsa8840_firmwarewsa8845_firmwarewsa8845h_firmwareRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-47388High· 7.8Memory corruption while passing pages to DSP with an unaligned starting address.
CVE-2025-47396High· 7.8Memory corruption occurs when a secure application is launched on a device with insufficient memory.
CVE-2025-47335Medium· 6.7Memory corruption while parsing clock configuration data for a specific hardware type.
CVE-2025-47332Medium· 6.7Memory corruption while processing a config call from userspace.
CVE-2025-47334Medium· 6.7Memory corruption while processing shared command buffer packet between camera userspace and kernel.
CVE-2025-47408High· 7.8Memory corruption when another driver calls an IOCTL with invalid input/output buffer.