Description
Memory Corruption when processing registry values with incorrect types using a direct query method.
Published: 2026-08-04
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a buffer overflow in the Bluetooth host stack caused by copying data into a buffer without checking the size of the input when processing registry values with incorrect types using a direct query method. This memory corruption can overwrite adjacent memory and may allow an attacker to execute arbitrary code, thereby compromising confidentiality, integrity, and availability. The flaw is a classic instance of CWE‑120.

Affected Systems

Qualcomm, Inc. Snapdragon is the only vendor listed, and no specific firmware or operating system versions have been disclosed. As a result, all Snapdragon devices that implement the affected Bluetooth host stack are potentially vulnerable, but the exact scope cannot be precisely determined without version information.

Risk and Exploitability

The CVSS score of 6.7 indicates moderate‑to‑high severity. EPSS is not available, so the current exploitation probability is unknown, and the vulnerability is not listed in the CISA KEV catalog, suggesting no confirmed exploits yet. The likely attack vector involves an attacker sending a crafted Bluetooth registry request that triggers the unsafe copy, which could be possible from a local or over‑the‑air connection depending on the device’s exposure. Mitigation focuses on patching or disabling vulnerable Bluetooth functionality to prevent exploitation.

Generated by OpenCVE AI on August 4, 2026 at 19:44 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Acquire and apply the latest firmware update from Qualcomm that fixes the buffer copy flaw.
  • If a patch is not yet available, disable Bluetooth or limit the device to trusted pairing partners to reduce the attack surface.
  • Configure the device to log anomalous registry queries and monitor for abnormal memory corruption symptoms, and alert administrators when such signs occur.

Generated by OpenCVE AI on August 4, 2026 at 19:44 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 06 Aug 2026 01:15:00 +0000

Type Values Removed Values Added
First Time appeared Qualcomm
Qualcomm snapdragon
Vendors & Products Qualcomm
Qualcomm snapdragon

Tue, 04 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 04 Aug 2026 15:45:00 +0000

Type Values Removed Values Added
Description Memory Corruption when processing registry values with incorrect types using a direct query method.
Title Buffer Copy Without Checking Size of Input in Bluetooth HOST
Weaknesses CWE-120
References
Metrics cvssV3_1

{'score': 6.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Qualcomm Aqt1000 Aqt1000 Firmware Cologne Cologne Firmware Fastconnect 6200 Fastconnect 6200 Firmware Fastconnect 6700 Fastconnect 6700 Firmware Fastconnect 6800 Fastconnect 6800 Firmware Fastconnect 6900 Fastconnect 6900 Firmware Fastconnect 7800 Fastconnect 7800 Firmware Qca0000 Qca0000 Firmware Qca2062 Qca2062 Firmware Qca2064 Qca2064 Firmware Qca2065 Qca2065 Firmware Qca2066 Qca2066 Firmware Qca6391 Qca6391 Firmware Qca6420 Qca6420 Firmware Qca6430 Qca6430 Firmware Qcm5430 Qcm5430 Firmware Qcm6490 Qcm6490 Firmware Sc8380xp Sc8380xp Firmware Sm6250 Sm6250 Firmware Snapdragon Snapdragon 7c\+ Gen 3 Compute Snapdragon 7c\+ Gen 3 Compute Firmware Snapdragon 7c Compute Platform Snapdragon 7c Compute Platform Firmware Snapdragon 7c Gen 2 Compute Platform Snapdragon 7c Gen 2 Compute Platform Firmware Snapdragon 8c Compute Platform Snapdragon 8c Compute Platform \(sc8180xp-ad\) Snapdragon 8c Compute Platform \(sc8180xp-ad\) Firmware Snapdragon 8c Compute Platform Firmware Snapdragon 8cx Compute Platform Snapdragon 8cx Compute Platform \"poipu Pro\" Snapdragon 8cx Compute Platform \"poipu Pro\" Firmware Snapdragon 8cx Compute Platform Firmware Snapdragon 8cx Gen 2 5g Compute Platform Snapdragon 8cx Gen 2 5g Compute Platform \"poipu Pro\" Snapdragon 8cx Gen 2 5g Compute Platform \"poipu Pro\" Firmware Snapdragon 8cx Gen 2 5g Compute Platform Firmware Snapdragon 8cx Gen 3 Compute Platform Snapdragon 8cx Gen 3 Compute Platform Firmware Video Collaboration Vc3 Platform Video Collaboration Vc3 Platform Firmware Wcd9340 Wcd9340 Firmware Wcd9341 Wcd9341 Firmware Wcd9370 Wcd9370 Firmware Wcd9375 Wcd9375 Firmware Wcd9378c Wcd9378c Firmware Wcd9380 Wcd9380 Firmware Wcd9385 Wcd9385 Firmware Wsa8810 Wsa8810 Firmware Wsa8815 Wsa8815 Firmware Wsa8830 Wsa8830 Firmware Wsa8835 Wsa8835 Firmware Wsa8840 Wsa8840 Firmware Wsa8845 Wsa8845 Firmware Wsa8845h Wsa8845h Firmware X2000077 X2000077 Firmware X2000086 X2000086 Firmware X2000090 X2000090 Firmware X2000092 X2000092 Firmware X2000094 X2000094 Firmware Xg101002 Xg101002 Firmware Xg101032 Xg101032 Firmware Xg101039 Xg101039 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published:

Updated: 2026-08-05T03:56:31.402Z

Reserved: 2026-01-21T12:51:13.995Z

Link: CVE-2026-24076

cve-icon Vulnrichment

Updated: 2026-08-04T16:04:54.544Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-04T16:16:22.920

Modified: 2026-08-06T18:33:38.250

Link: CVE-2026-24076

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-06T01:00:03Z

Weaknesses
  • CWE-120

    Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')