Impact
An integer overflow or wraparound occurs in the data network stack when the system processes a packet whose size approaches the maximum permitted value. The overflow corrupts memory, which can lead to unexpected behavior such as a crash or other reliability failures. The flaw is classified as CWE-190.
Affected Systems
Devices that incorporate Qualcomm Snapdragon chipsets are affected. No specific model or firmware version is cited in the advisory, so any Snapdragon-based system that includes the vulnerable network stack should be considered at risk.
Risk and Exploitability
The CVSS score of 7.8 indicates high severity. EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog, suggesting that no public exploits have been reported yet. The flaw is triggered by a packet that the device receives, implying a remote network-based attack vector. Until a fix is applied, devices may suffer from memory corruption that can result in crashes or other functional disruptions if a malicious packet is delivered.
OpenCVE Enrichment