CVE Field Guide
About Us
CVE-2025-47381
PUBLISHED
Use After Free in Automotive Audio
Assigner:
qualcomm
Reserved:
06.05.2025
Published:
02.03.2026
Updated:
03.03.2026
Memory Corruption while processing IOCTL calls when concurrent access to shared buffer occurs.
Metrics
CVSS 3.1
CVSS Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS Score:
7.8
CVSS score
7.8
Attack Vector
Local
Scope
Unchanged
Attack Complexity
Low
Confidentiality Impact
High
Privileges Required
Low
Integrity Impact
High
User Interaction
None
Availability Impact
High
CVSS 3.1
Product Status
Vendor
Qualcomm, Inc.
Product
Snapdragon
Versions
Default:
unaffected
Version LeMans_AU_LGIT is affected
Version LeMansAU is affected
Version QAM8255P is affected
Version QAMSRV1H is affected
Version QAMSRV1M is affected
Version QCA6574 is affected
Version QCA6574A is affected
Version QCA6574AU is affected
Version QCA6595 is affected
Version QCA6595AU is affected
Version QCA6688AQ is affected
Version QCA6696 is affected
Version QCA9367 is affected
Version QCA9377 is affected
Version SA6155P is affected
Version SA7255P is affected
Version SA7775P is affected
Version SA8155P is affected
Version SA8195P is affected
Version SA8255P is affected
Version SA8620P is affected
Version SA8770P is affected
Version SA9000P is affected
Version SRV1H is affected
Version SRV1M is affected
References
https://docs.qualcomm.com/product/publicresources/securitybulletin/march-2026-bulletin.html
Problem Types
CWE-416 Use After Free
CWE