Time-of-check Time-of-use (TOCTOU) Race Condition in Camera_Linux

CVE Details

Basic Information

Title Time-of-check Time-of-use (TOCTOU) Race Condition in Camera_Linux
Type cve
Published 2025-08-06T07:25:57.550Z
Modified 2025-08-06T07:25:57.550Z

Product Information

Vendor Qualcomm, Inc.
Product Snapdragon
Version FastConnect 6900

CVSS Information

Base Score 7.8 (HIGH)
Attack Vector CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Analysis

AI Description A race condition vulnerability in the Camera_Linux component could lead to memory corruption, potentially allowing arbitrary code execution or causing system crashes.
AI Severity Critical
AI Vendor Qualcomm
AI Product Snapdragon
AI Version FastConnect 6900, FastConnect 7800, Snapdragon 8 Gen 1 Mobile Platform, WCD9380, WSA8830, WSA8835

Affected Products

  • Qualcomm, Inc. Snapdragon FastConnect 6900
  • Qualcomm, Inc. Snapdragon FastConnect 7800
  • Qualcomm, Inc. Snapdragon Snapdragon 8 Gen 1 Mobile Platform
  • Qualcomm, Inc. Snapdragon WCD9380
  • Qualcomm, Inc. Snapdragon WSA8830
  • Qualcomm, Inc. Snapdragon WSA8835

Additional Information

CWE List CWE-367
Source qualcomm

Description

Memory corruption when using Virtual cdm (Camera Data Mover) to write registers.

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.