Home

Description

Cryptographic Issue when a shared VM reference allows HLOS to boot loader and access cert chain.

PUBLISHED Reserved 2025-05-06 | Published 2026-03-02 | Updated 2026-03-03 | Assigner qualcomm




HIGH: 7.1CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Problem types

CWE-497: Exposure of Sensitive System Information to an Unauthorized Control Sphere

Product status

Default status
unaffected

Cologne
affected

FastConnect 6700
affected

FastConnect 6800
affected

FastConnect 6900
affected

FastConnect 7800
affected

LeMans_AU_LGIT
affected

LeMansAU
affected

Pandeiro
affected

QAM8255P
affected

QAMSRV1H
affected

QAMSRV1M
affected

QCA6391
affected

QCA6595
affected

QCA6595AU
affected

QCA6696
affected

QCA6698AQ
affected

QCA6797AQ
affected

QLN1083BD
affected

QLN1086BD
affected

QPA1083BD
affected

QPA1086BD
affected

QXM1083
affected

QXM1086
affected

QXM1093
affected

QXM1094
affected

QXM1095
affected

QXM1096
affected

SA7255P
affected

SA7775P
affected

SA8255P
affected

SA8620P
affected

SA8770P
affected

SA9000P
affected

SAR1165P
affected

SAR1250P
affected

SAR2130P
affected

SAR2230P
affected

SD865 5G
affected

Snapdragon 8 Elite Gen 5
affected

Snapdragon 865 5G Mobile Platform
affected

Snapdragon 865+ 5G Mobile Platform
affected

Snapdragon 870 5G Mobile Platform
affected

Snapdragon AR1 Gen 1 Platform
affected

Snapdragon AR1+ Gen 1 Platform
affected

Snapdragon X55 5G Modem-RF System
affected

Snapdragon XR2 5G Platform
affected

Snapdragon XR2+ Gen 1 Platform
affected

SRV1H
affected

SRV1M
affected

SXR2230P
affected

SXR2250P
affected

WCD9378C
affected

WCD9380
affected

WCD9385
affected

WCD9395
affected

WCN3950
affected

WCN7860
affected

WCN7861
affected

WSA8810
affected

WSA8815
affected

WSA8830
affected

WSA8832
affected

WSA8835
affected

WSA8840
affected

WSA8845
affected

WSA8845H
affected

X2000077
affected

X2000086
affected

X2000090
affected

X2000092
affected

X2000094
affected

XG101002
affected

XG101032
affected

XG101039
affected

References

docs.qualcomm.com/...curitybulletin/march-2026-bulletin.html

cve.org (CVE-2025-47378)

nvd.nist.gov (CVE-2025-47378)

Download JSON