CVE Details
Basic Information
| Title | Buffer Over-read in Automotive OS Platform Android |
|---|---|
| Type | cve |
| Published | 2025-08-06T07:25:50.337Z |
| Modified | 2025-08-06T07:25:50.337Z |
Product Information
| Vendor | Qualcomm, Inc. |
|---|---|
| Product | Snapdragon |
| Version | AR8035 |
CVSS Information
| Base Score | 6.1 (MEDIUM) |
|---|---|
| Attack Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L |
AI Analysis
| AI Description | A buffer over-read vulnerability in the Automotive OS Platform Android could lead to information disclosure when opening a fastrpc session without proper domain sanitization. |
|---|---|
| AI Severity | Medium |
| AI Vendor | Qualcomm, Inc. |
| AI Product | Snapdragon |
| AI Version | AR8035, FastConnect 7800, QCA6584AU, QCA6698AQ, QCA8081, QCA8337, QCC710, QCN6224, QCN6274, QFW7114, QFW7124, Snapdragon Auto 5G Modem-RF Gen 2, Snapdragon X72 5G Modem-RF System, Snapdragon X75 5G Modem-RF System, WCD9340 |
Affected Products
- Qualcomm, Inc. Snapdragon AR8035
- Qualcomm, Inc. Snapdragon FastConnect 7800
- Qualcomm, Inc. Snapdragon QCA6584AU
- Qualcomm, Inc. Snapdragon QCA6698AQ
- Qualcomm, Inc. Snapdragon QCA8081
- Qualcomm, Inc. Snapdragon QCA8337
- Qualcomm, Inc. Snapdragon QCC710
- Qualcomm, Inc. Snapdragon QCN6224
- Qualcomm, Inc. Snapdragon QCN6274
- Qualcomm, Inc. Snapdragon QFW7114
- Qualcomm, Inc. Snapdragon QFW7124
- Qualcomm, Inc. Snapdragon Snapdragon Auto 5G Modem-RF Gen 2
- Qualcomm, Inc. Snapdragon Snapdragon X72 5G Modem-RF System
- Qualcomm, Inc. Snapdragon Snapdragon X75 5G Modem-RF System
- Qualcomm, Inc. Snapdragon WCD9340
Additional Information
| CWE List | CWE-126 |
|---|---|
| Source | qualcomm |
Description
Information disclosure while opening a fastrpc session when domain is not sanitized.