CVE-2025-47407High· 7.8▾ TwilightMemory corruption while creating a process on the digital signal processor due to allocation failure at the kernel level.
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 42.9 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.05%
Memory corruption while creating a process on the digital signal processor due to allocation failure at the kernel level.
video_collaboration_vc1_platform_firmwarevideo_collaboration_vc3_platform_firmwareqxm1083_firmwareqxm1086_firmwareqxm1093_firmwareqxm1094_firmwareqxm1095_firmwareqxm1096_firmwaresar1165p_firmwaresar2130p_firmwaresc8380xp_firmwaresd662_firmwaresd865_5g_firmwaresm6225p_firmwaresm6450p_firmwaresm6475p_firmwaresm6475q_firmwaresm6850_firmwaresm7435_firmwaresm7435p_firmwaresm7635p_firmwaresm8735p_firmwaresm8750p_firmwaresm8845p_firmwaresnapdragon_4_gen_2_mobile_firmwaresnapdragon_460_mobile_firmwaresnapdragon_6_gen_1_mobile_firmwaresnapdragon_6_gen_3_mobile_firmwaresnapdragon_662_mobile_firmwaresnapdragon_680_4g_mobile_firmwaresnapdragon_685_4g_mobile_firmwaresnapdragon_7_gen_4_mobile_firmwaresnapdragon_8_elite_firmwareqpa1086bd_firmwareqpa1083bd_firmwareqmp2001_firmwareqmp1000_firmwareqmb715_firmwareqln1086bd_firmwareqln1083bd_firmwareqcs4290_firmwareqcs2290_firmwareqcm4325_firmwareqcm2290_firmwareqca6391_firmwarepandeiro_firmwarepalawan25_firmwareorne_firmwarenetrani_firmwaremolokai_firmwareg2_gen_1_firmwarefastconnect_7800_firmwarefastconnect_6900_firmwarefastconnect_6700_firmwarefastconnect_6200_firmwarecq8725s_firmwarecq7790_firmwaresnapdragon_8_elite_gen_5_firmwaresnapdragon_ar1+_gen_1_firmwaresnapdragon_w5+_gen_1_wearable_firmwaresnapdragon_xr2_5g_firmwaresnapdragon_xr2+_gen_1_firmwaresnapdragon_wear_elite_firmwaresw5100_firmwaresw5100p_firmwaresxr2230p_firmwaresxr2250p_firmwaresxr2330p_firmwaresxr2350p_firmwarethemisto_firmwarewcd9370_firmwarewcd9375_firmwarewcd9378_firmwarewcd9380_firmwarewcd9385_firmwarewcd9395_firmwarewcn3950_firmwarewcn3980_firmwarewcn3988_firmwarewcn6450_firmwarewcn6755_firmwarewcn7760_firmwarewcn7860_firmwarewcn7861_firmwarewcn7880_firmwarewcn7881_firmwarewsa8810_firmwarewsa8815_firmwarewsa8830_firmwarewsa8832_firmwarewsa8835_firmwarewsa8840_firmwarewsa8845_firmwarewsa8845h_firmwarewsa8850_firmwarewsa8850w_firmwarewsa8855c_firmwarex1e80100_firmwarexrv7209_firmwarexrv9209_firmwareRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-23950High· 8.8node-tar,a Tar for Node.js, has a race condition vulnerability in versions up to and including 7.5.3
CVE-2025-47408High· 7.8Memory corruption when another driver calls an IOCTL with invalid input/output buffer.
CVE-2025-47406Medium· 6.1Information Disclosure while processing IOCTL handler callbacks without verifying buffer size.
CVE-2025-47405High· 7.8Memory corruption when processing camera sensor input/output control codes with invalid output buffers.
CVE-2025-47404Medium· 6.5Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified.
CVE-2025-47403Medium· 6.5Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming.