Memory corruption while parsing the ML IE due to invalid frame content.
An error classified as CWE-129 (improper validation of array index) occurs during parsing of the ML IE (Multi-Link Information Element) information element. When the processed frame contains invalid content, missing or insufficient array index validation leads to memory corruption. An attacker can craft an appropriately modified frame and send it to a vulnerable device without requiring any privileges.
Successful exploitation can lead to device takeover, disclosure of confidential data, data modification, or complete system unavailability (violation of confidentiality, integrity, and availability at a high level).
Apply patches available from the manufacturer according to references — Qualcomm security bulletin from February 2025 (https://docs.qualcomm.com/product/publicresources/securitybulletin/february-2025-bulletin.html). OEM device manufacturers using Qualcomm chipsets should immediately deploy firmware updates provided by Qualcomm.
Firmware of Qualcomm devices: AR8035, CSR8811, FastConnect 6700, and other products listed in the Qualcomm security bulletin from February 2025.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HQualcomm Ar8035
HWQualcommall versionsQualcomm Ar8035 Firmware
OSQualcommall versionsQualcomm Csr8811
HWQualcommall versionsQualcomm Csr8811 Firmware
OSQualcommall versionsQualcomm Fastconnect 6700
HWQualcommall versionsQualcomm Fastconnect 6700 Firmware
OSQualcommall versionsQualcomm Fastconnect 6900
HWQualcommall versionsQualcomm Fastconnect 6900 Firmware
OSQualcommall versionsQualcomm Fastconnect 7800
HWQualcommall versionsQualcomm Fastconnect 7800 Firmware
OSQualcommall versionsQualcomm Immersive Home 214
HWQualcommall versionsQualcomm Immersive Home 214 Firmware
OSQualcommall versionsQualcomm Immersive Home 216
HWQualcommall versionsQualcomm Immersive Home 216 Firmware
OSQualcommall versionsQualcomm Immersive Home 316
HWQualcommall versionsQualcomm Immersive Home 316 Firmware
OSQualcommall versionsQualcomm Immersive Home 318
HWQualcommall versionsQualcomm Immersive Home 318 Firmware
OSQualcommall versionsQualcomm Immersive Home 3210
HWQualcommall versionsQualcomm Immersive Home 3210 Firmware
OSQualcommall versionsQualcomm Immersive Home 326
HWQualcommall versionsQualcomm Immersive Home 326 Firmware
OSQualcommall versionsQualcomm Ipq5010
HWQualcommall versionsQualcomm Ipq5010 Firmware
OSQualcommall versionsQualcomm Ipq5028
HWQualcommall versionsQualcomm Ipq5028 Firmware
OSQualcommall versionsQualcomm Ipq5300
HWQualcommall versionsQualcomm Ipq5300 Firmware
OSQualcommall versionsQualcomm Ipq5302
HWQualcommall versionsQualcomm Ipq5302 Firmware
OSQualcommall versions
Related vulnerabilities
Przepełnienie bufora stosu w NAN Service Discovery Frames — Qualcomm
Qualcomm: Memory Corruption przy ładowaniu uszkodzonego obrazu ELF
Qualcomm Firmware — memory corruption przy wyborze PLMN z listy SOR
Memory corruption w Qualcomm podczas składania pakietów RTP (NALUs)
Qualcomm: podatność kryptograficzna umożliwiająca Auth Bypass podczas pobierania