PatchSiren cyber security CVE debrief
CVE-2025-47405 Qualcomm, Inc. CVE debrief
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-05-04T17:16:20.827Z and has not been modified since then. The NVD entry is currently Analyzed. This memory corruption vulnerability in Qualcomm Snapdragon and FastConnect products requires verification of exposure and potential risks associated with processing camera sensor input/output control codes. Defenders should assess potential exposure and risks, review and apply vendor-provided security updates when available, and monitor system logs for potential memory corruption attempts. The CVE-2025-47405 vulnerability has a CVSS score of 7.8 and is classified as HIGH severity. The
- Vendor
- Qualcomm, Inc.
- Product
- Snapdragon
- CVSS
- HIGH 7.8
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-05-04
- Original CVE updated
- 2026-09-30
- Advisory published
- 2026-05-04
- Advisory updated
- 2026-09-30
Who should care
Defenders responsible for Qualcomm Snapdragon and FastConnect products, as well as security teams managing these systems, should assess potential exposure and risks associated with this vulnerability.
Why it matters
CVE-2025-47405 is a memory corruption vulnerability in Qualcomm Snapdragon and FastConnect products that requires verification of exposure and potential risks associated with processing camera sensor input/output control codes.
- Verify potential memory corruption risks when processing camera sensor input/output control codes.
- Assess exposure of Qualcomm Snapdragon and FastConnect products to the vulnerability.
- Review and apply vendor-provided security updates when available.
- Monitor system logs for potential memory corruption attempts.
Technical summary
The CVE-2025-47405 vulnerability is a memory corruption issue that occurs when processing camera sensor input/output control codes with invalid output buffers in Qualcomm Snapdragon and FastConnect products. The vulnerability has a CVSS score of 7.8 and is classified as HIGH severity.
Defensive priority
Qualcomm Snapdragon and FastConnect product users should prioritize verifying exposure and assessing potential memory corruption risks when processing camera sensor input/output control codes.
Recommended defensive actions
- Verify exposure of Qualcomm Snapdragon and FastConnect products to the memory corruption vulnerability.
- Assess potential risks associated with processing camera sensor input/output control codes.
- Review and apply vendor-provided security updates when available.
- Monitor system logs for potential memory corruption attempts.
Evidence notes
The CVE record and NVD entry provide details on the memory corruption vulnerability in Qualcomm Snapdragon and FastConnect products. However, specific version information and exploitation details are not provided in the source corpus.
Sources and references
Verified primary and authoritative sources
-
CVE-2025-47405 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2025-47405
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2025-47405 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2025-47405
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source reference
Unverified legacy reference
URL: https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2026-bulletin.html
[email protected] - Vendor Advisory
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.