#VU123406 Reachable Assertion in Qualcomm products - CVE-2025-47384
Published: March 2, 2026
Vulnerability identifier: #VU123406
Vulnerability risk: Medium
CVSSv4.0: CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2025-47384
CWE-ID: CWE-617
Exploitation vector: Adjecent network
Exploit availability:
No public exploit available
Vulnerable software:
5G Fixed Wireless Access Platform
FastConnect 6200
FastConnect 6700
FastConnect 6800
FastConnect 6900
QCA6391
QCA6574A
QCA6595AU
QCA6696
QCA6698AQ
QCM5430
QCM6490
Qualcomm Video Collaboration VC3 Platform
SDX57M
SM7325P
Snapdragon 4 Gen 1 Mobile Platform
Snapdragon 480 5G Mobile Platform
Snapdragon 480+ 5G Mobile Platform
Snapdragon 690 5G Mobile Platform
Snapdragon 695 5G Mobile Platform
Snapdragon 778G 5G Mobile Platform
Snapdragon 778G+ 5G Mobile Platform
Snapdragon 782G Mobile Platform
Snapdragon 7c+ Gen 3 Compute
Snapdragon 865 5G Mobile Platform
Snapdragon 865+ 5G Mobile Platform
Snapdragon 870 5G Mobile Platform
Snapdragon 888 5G Mobile Platform
Snapdragon 888+ 5G Mobile Platform
Snapdragon Auto 5G Modem-RF
Snapdragon X53 5G Modem-RF System
Snapdragon X55 5G Modem-RF System
WCD9341
WCD9360
WCD9370
WCD9375
WCD9380
WCD9385
WCN3988
WSA8810
WSA8815
WSA8830
WSA8835
5G Fixed Wireless Access Platform
FastConnect 6200
FastConnect 6700
FastConnect 6800
FastConnect 6900
QCA6391
QCA6574A
QCA6595AU
QCA6696
QCA6698AQ
QCM5430
QCM6490
Qualcomm Video Collaboration VC3 Platform
SDX57M
SM7325P
Snapdragon 4 Gen 1 Mobile Platform
Snapdragon 480 5G Mobile Platform
Snapdragon 480+ 5G Mobile Platform
Snapdragon 690 5G Mobile Platform
Snapdragon 695 5G Mobile Platform
Snapdragon 778G 5G Mobile Platform
Snapdragon 778G+ 5G Mobile Platform
Snapdragon 782G Mobile Platform
Snapdragon 7c+ Gen 3 Compute
Snapdragon 865 5G Mobile Platform
Snapdragon 865+ 5G Mobile Platform
Snapdragon 870 5G Mobile Platform
Snapdragon 888 5G Mobile Platform
Snapdragon 888+ 5G Mobile Platform
Snapdragon Auto 5G Modem-RF
Snapdragon X53 5G Modem-RF System
Snapdragon X55 5G Modem-RF System
WCD9341
WCD9360
WCD9370
WCD9375
WCD9380
WCD9385
WCN3988
WSA8810
WSA8815
WSA8830
WSA8835
Software vendor:
Qualcomm
Qualcomm
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation in FW. A remote attacker can perform a denial of service (DoS) attack.
Remediation
Install security update from vendor's website.