Stack-based buffer overflow in Qualcomm products - CVE-2025-47391

 

Stack-based buffer overflow in Qualcomm products - CVE-2025-47391

Published: April 15, 2026


Vulnerability identifier: #VU126203
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2025-47391
CWE-ID: CWE-121
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local application to execute arbitrary code.

The vulnerability exists due to improper input validation in Camera Driver. A local application can execute arbitrary code.


Affected software

Snapdragon 7 Gen 1 Mobile Platform
SRV1M
SRV1H
Snapdragon AR1 Gen 1 Platform
Snapdragon 8+ Gen 2 Mobile Platform
Snapdragon 8+ Gen 1 Mobile Platform
Snapdragon 8 Gen 3 Mobile Platform
Snapdragon 8 Gen 2 Mobile Platform
Snapdragon 8 Gen 1 Mobile Platform
Snapdragon 8 Elite Gen 5
Snapdragon 8 Elite
Snapdragon 7s Gen 3 Mobile Platform
Snapdragon 7+ Gen 2 Mobile Platform
WCD9370
Snapdragon 6 Gen 4 Mobile Platform
Snapdragon 6 Gen 3 Mobile Platform
Snapdragon 6 Gen 1 Mobile Platform
Snapdragon 4 Gen 2 Mobile Platform
SM8750P
SM8650Q
SM8635P
SM8635
SM8550P
SM7675P
WCN6755
WSA8845H
WSA8845
WSA8840
WSA8835
WSA8830
WSA8815
WSA8810
WCN7881
WCN7880
WCN7861
WCN7860
SM7675
WCN6650
WCN6450
WCN3988
WCN3950
WCD9395
WCD9390
WCD9385
WCD9380
WCD9378
WCD9375
WCD9371
Netrani
QCA6698AQ
QCA6678AQ
QCA6595AU
QCA6595
QCA6391
QAMSRV1M
QAMSRV1H
QAM8397P
QAM8255P
Pandeiro
Palawan25
Orne
QCA6698AU
Monaco_IOT
Milos
LeMansAU
LeMans_AU_LGIT
IQ9 Series Platform
IQ8 Series Platform
IQ6 Series Platform
G2 Gen 1
FastConnect 7800
FastConnect 6900
FastConnect 6700
SA7255P
SM7635P
SM7550P
SM7550
SM7435
SM6650P
SD 8 Gen1 5G
SA8770P
SA8255P
SA7775P
FastConnect 6200
Qualcomm Video Collaboration VC3 Platform
QMP1000
QCS8550
QCS4490
QCN9012
QCN9011
QCM6490
QCM5430
QCM4490
QCA8695AU
QCA6797AQ
SM8475P
WSA8832
SA9000P
SA8620P

How to mitigate CVE-2025-47391

Install security update from vendor's website.


External References

Related Security Bulletins