← לוח פגיעויות

CVE-2026-21385

גבוהה 7.8 מנוצלת בשטח (KEV)

ניצול פעיל מאומת — קטלוג CISA KEV

שם
Qualcomm Multiple Chipsets Memory Corruption Vulnerability
נוסף לקטלוג
יעד טיפול (פדרלי)
פעולה נדרשת
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

תיאור (מקור, אנגלית)

Memory corruption while using alignments for memory allocation.

מדדים

CVSS 3.1
7.8 (HIGH) מקור הציון: CNA CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS — סבירות ניצול
1% (אחוזון 100) נכון ל-23/9/2026
CWE
CWE-190

מוצרים מושפעים

qualcomm: sm7675p firmware; qualcomm: sm7675p; qualcomm: sm8475p firmware; qualcomm: sm8475p; qualcomm: sm8550p firmware; qualcomm: sm8550p; qualcomm: sm8635 firmware; qualcomm: sm8635; qualcomm: sm8635p firmware; qualcomm: sm8635p; qualcomm: sm8650q firmware; qualcomm: sm8650q; qualcomm: sm8750p firmware; qualcomm: sm8750p; qualcomm: smart audio 400 platform firmware

קישורים