CVE 7.8 HIGH

Time-of-check Time-of-use (TOCTOU) Race Condition in DSP Service_CVE-2026-25260

7.8 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

Memory Corruption when accessing shared buffers without validation of concurrent user-mode input modifications.

Basic Information

ID CVE-2026-25260
Source qualcomm
Published Jun 1, 2026 at 22:05

Affected Product

Vendor Qualcomm, Inc.
Product Snapdragon
Version Cologne
Affected Versions Qualcomm, Inc. Snapdragon Cologne
Qualcomm, Inc. Snapdragon FastConnect 6900
Qualcomm, Inc. Snapdragon FastConnect 7800
Qualcomm, Inc. Snapdragon QCA0000
Qualcomm, Inc. Snapdragon SC8380XP
Qualcomm, Inc. Snapdragon WCD9378C
Qualcomm, Inc. Snapdragon WCD9380
Qualcomm, Inc. Snapdragon WCD9385
Qualcomm, Inc. Snapdragon WSA8840
Qualcomm, Inc. Snapdragon WSA8845
Qualcomm, Inc. Snapdragon WSA8845H
Qualcomm, Inc. Snapdragon X2000077
Qualcomm, Inc. Snapdragon X2000086
Qualcomm, Inc. Snapdragon X2000090
Qualcomm, Inc. Snapdragon X2000092
Qualcomm, Inc. Snapdragon X2000094
Qualcomm, Inc. Snapdragon XG101002
Qualcomm, Inc. Snapdragon XG101032
Qualcomm, Inc. Snapdragon XG101039

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.