PatchSiren

PatchSiren cyber security CVE debrief

CVE-2025-47405 Qualcomm, Inc. CVE debrief

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-05-04T17:16:20.827Z and has not been modified since then. The NVD entry is currently Analyzed. This memory corruption vulnerability in Qualcomm Snapdragon and FastConnect products requires verification of exposure and potential risks associated with processing camera sensor input/output control codes. Defenders should assess potential exposure and risks, review and apply vendor-provided security updates when available, and monitor system logs for potential memory corruption attempts. The CVE-2025-47405 vulnerability has a CVSS score of 7.8 and is classified as HIGH severity. The

Vendor
Qualcomm, Inc.
Product
Snapdragon
CVSS
HIGH 7.8
CISA KEV
Not listed in stored evidence
Original CVE published
2026-05-04
Original CVE updated
2026-09-30
Advisory published
2026-05-04
Advisory updated
2026-09-30

Who should care

Defenders responsible for Qualcomm Snapdragon and FastConnect products, as well as security teams managing these systems, should assess potential exposure and risks associated with this vulnerability.

Why it matters

CVE-2025-47405 is a memory corruption vulnerability in Qualcomm Snapdragon and FastConnect products that requires verification of exposure and potential risks associated with processing camera sensor input/output control codes.

  • Verify potential memory corruption risks when processing camera sensor input/output control codes.
  • Assess exposure of Qualcomm Snapdragon and FastConnect products to the vulnerability.
  • Review and apply vendor-provided security updates when available.
  • Monitor system logs for potential memory corruption attempts.

Technical summary

The CVE-2025-47405 vulnerability is a memory corruption issue that occurs when processing camera sensor input/output control codes with invalid output buffers in Qualcomm Snapdragon and FastConnect products. The vulnerability has a CVSS score of 7.8 and is classified as HIGH severity.

Defensive priority

Qualcomm Snapdragon and FastConnect product users should prioritize verifying exposure and assessing potential memory corruption risks when processing camera sensor input/output control codes.

Recommended defensive actions

  • Verify exposure of Qualcomm Snapdragon and FastConnect products to the memory corruption vulnerability.
  • Assess potential risks associated with processing camera sensor input/output control codes.
  • Review and apply vendor-provided security updates when available.
  • Monitor system logs for potential memory corruption attempts.

Evidence notes

The CVE record and NVD entry provide details on the memory corruption vulnerability in Qualcomm Snapdragon and FastConnect products. However, specific version information and exploitation details are not provided in the source corpus.

Sources and references

Verified primary and authoritative sources

  • CVE-2025-47405 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2025-47405

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2025-47405 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2025-47405

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

  • Source reference

    Unverified legacy reference

    URL: https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2026-bulletin.html

    [email protected] - Vendor Advisory

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.