CVE-2025-59616Medium· 6.6▾ SunlitMemory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input due to accessing already freed memory.
▾ Sunlit zone — Low / medium · no exploitation signal
impact 36.3 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.09%
Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input due to accessing already freed memory.
fastconnect_6700_firmwarefastconnect_6900_firmwarefastconnect_7800_firmwaremolokai_firmwareorne_firmwarepandeiro_firmwareqcm5430_firmwareqcm6490_firmwareqmp1000_firmwareqmp2001_firmwarevideo_collaboration_vc3_platform_firmwaresc8380xp_firmwaresd865_5g_firmwaresm6850_firmwaresm8845p_firmwaresnapdragon_460_mobile_platform_firmwaresnapdragon_662_mobile_platform_firmwaresnapdragon_8_elite_gen_5_firmwaresnapdragon_ar1_gen_1_platform_firmwaresnapdragon_xr2_5g_platform_firmwaresnapdragon_xr2+_gen_1_platform_firmwaresxr2230p_firmwaresxr2250p_firmwarewcd9370_firmwarewcd9375_firmwarewcd9378_firmwarewcd9380_firmwarewcd9385_firmwarewcd9395_firmwarewcn3950_firmwarewcn3988_firmwarewcn6450_firmwarewcn7760_firmwarewcn7860_firmwarewcn7861_firmwarewcn7880_firmwarewcn7881_firmwarewsa8810_firmwarewsa8815_firmwarewsa8830_firmwarewsa8832_firmwarewsa8835_firmwarewsa8840_firmwarewsa8845_firmwarewsa8845h_firmwarewsa8850_firmwarewsa8850w_firmwarewsa8855c_firmwareRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-59617Medium· 6.6Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input.
CVE-2025-59615Medium· 6.6Memory Corruption when invoking device input/output control operations for mapping and unmapping persistent memory buffers due to improper synchronization.
CVE-2025-27036Medium· 6.1Information disclosure when Video engine escape input data is less than expected minimum size.
CVE-2022-3256High· 7.8Use After Free in GitHub repository vim/vim prior to 9.0.0530.
CVE-2022-3134High· 7.8Use After Free in GitHub repository vim/vim prior to 9.0.0389.
CVE-2022-3297High· 7.8Use After Free in GitHub repository vim/vim prior to 9.0.0579.