Description
Information disclosure while opening a fastrpc session when domain is not sanitized.
Published: 2025-08-06
Score: 6.1 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2025-23807 Information disclosure while opening a fastrpc session when domain is not sanitized.
History

Tue, 19 Aug 2025 13:30:00 +0000

Type Values Removed Values Added
First Time appeared Qualcomm ar8035
Qualcomm ar8035 Firmware
Qualcomm fastconnect 7800
Qualcomm fastconnect 7800 Firmware
Qualcomm qca6584au
Qualcomm qca6584au Firmware
Qualcomm qca6698aq
Qualcomm qca6698aq Firmware
Qualcomm qca8081
Qualcomm qca8081 Firmware
Qualcomm qca8337
Qualcomm qca8337 Firmware
Qualcomm qcc710
Qualcomm qcc710 Firmware
Qualcomm qcn6224
Qualcomm qcn6224 Firmware
Qualcomm qcn6274
Qualcomm qcn6274 Firmware
Qualcomm qfw7114
Qualcomm qfw7114 Firmware
Qualcomm qfw7124
Qualcomm qfw7124 Firmware
Qualcomm snapdragon Auto 5g Modem-rf Gen 2
Qualcomm snapdragon Auto 5g Modem-rf Gen 2 Firmware
Qualcomm snapdragon X72 5g Modem-rf System
Qualcomm snapdragon X72 5g Modem-rf System Firmware
Qualcomm snapdragon X75 5g Modem-rf System
Qualcomm snapdragon X75 5g Modem-rf System Firmware
Qualcomm wcd9340
Qualcomm wcd9340 Firmware
CPEs cpe:2.3:h:qualcomm:ar8035:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6584au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6698aq:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca8081:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca8337:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcc710:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcn6224:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcn6274:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfw7114:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfw7124:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_auto_5g_modem-rf_gen_2:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_x72_5g_modem-rf_system:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_x75_5g_modem-rf_system:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9340:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:ar8035_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6584au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6698aq_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca8081_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca8337_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcc710_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcn6224_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcn6274_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qfw7114_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qfw7124_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_auto_5g_modem-rf_gen_2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_x72_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_x75_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9340_firmware:-:*:*:*:*:*:*:*
Vendors & Products Qualcomm ar8035
Qualcomm ar8035 Firmware
Qualcomm fastconnect 7800
Qualcomm fastconnect 7800 Firmware
Qualcomm qca6584au
Qualcomm qca6584au Firmware
Qualcomm qca6698aq
Qualcomm qca6698aq Firmware
Qualcomm qca8081
Qualcomm qca8081 Firmware
Qualcomm qca8337
Qualcomm qca8337 Firmware
Qualcomm qcc710
Qualcomm qcc710 Firmware
Qualcomm qcn6224
Qualcomm qcn6224 Firmware
Qualcomm qcn6274
Qualcomm qcn6274 Firmware
Qualcomm qfw7114
Qualcomm qfw7114 Firmware
Qualcomm qfw7124
Qualcomm qfw7124 Firmware
Qualcomm snapdragon Auto 5g Modem-rf Gen 2
Qualcomm snapdragon Auto 5g Modem-rf Gen 2 Firmware
Qualcomm snapdragon X72 5g Modem-rf System
Qualcomm snapdragon X72 5g Modem-rf System Firmware
Qualcomm snapdragon X75 5g Modem-rf System
Qualcomm snapdragon X75 5g Modem-rf System Firmware
Qualcomm wcd9340
Qualcomm wcd9340 Firmware

Thu, 07 Aug 2025 07:15:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google android
Qualcomm
Qualcomm snapdragon
Vendors & Products Google
Google android
Qualcomm
Qualcomm snapdragon

Wed, 06 Aug 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 06 Aug 2025 07:45:00 +0000

Type Values Removed Values Added
Description Information disclosure while opening a fastrpc session when domain is not sanitized.
Title Buffer Over-read in Automotive OS Platform Android
Weaknesses CWE-126
References
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L'}


Subscriptions

Google Android
Qualcomm Ar8035 Ar8035 Firmware Fastconnect 7800 Fastconnect 7800 Firmware Qca6584au Qca6584au Firmware Qca6698aq Qca6698aq Firmware Qca8081 Qca8081 Firmware Qca8337 Qca8337 Firmware Qcc710 Qcc710 Firmware Qcn6224 Qcn6224 Firmware Qcn6274 Qcn6274 Firmware Qfw7114 Qfw7114 Firmware Qfw7124 Qfw7124 Firmware Snapdragon Snapdragon Auto 5g Modem-rf Gen 2 Snapdragon Auto 5g Modem-rf Gen 2 Firmware Snapdragon X72 5g Modem-rf System Snapdragon X72 5g Modem-rf System Firmware Snapdragon X75 5g Modem-rf System Snapdragon X75 5g Modem-rf System Firmware Wcd9340 Wcd9340 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published:

Updated: 2025-08-06T14:37:52.448Z

Reserved: 2024-12-18T09:50:08.924Z

Link: CVE-2025-21457

cve-icon Vulnrichment

Updated: 2025-08-06T14:37:47.726Z

cve-icon NVD

Status : Analyzed

Published: 2025-08-06T08:15:27.043

Modified: 2025-08-19T13:21:46.093

Link: CVE-2025-21457

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-08-06T15:12:34Z

Weaknesses