CVE-2025-21479HIGH 8.6CISA KEVEPSS p52.3%
CVE-2025-21479Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability
Qualcomm / Multiple Chipsets
Description
Multiple Qualcomm chipsets contain an incorrect authorization vulnerability. This vulnerability allows for memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
Scoring
| CVSS 3.1 | 8.6 (HIGH) |
| Vector | CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H |
| EPSS | 0.78% probability of exploitation · percentile 52.3% · 2026-08-03T12:00:16Z |
| Published | 2025-06-03 |
| Last modified | 2025-10-28 |
CISA KEV entry
Added to KEV: 2025-06-03
Underlying weaknesses· 1
References
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Incorrect Authorizationcwe-863 | 0% | live |
(incoming)1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| KEVEntry | Qualcomm Multiple Chipsets Incorrect Authorization Vulnerabilitykev-cve-2025-21479 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.