CVE-2025-27036Buffer Over-read in INC Snapdragon

CWE-126Buffer Over-read2 documents2 sources
Severity
6.1MEDIUMNVD
EPSS
0.0%
top 96.60%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 24

Description

Information disclosure when Video engine escape input data is less than expected minimum size.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:LExploitability: 1.8 | Impact: 4.2

Affected Packages1 packages

CVEListV5qualcomm_inc/snapdragon20 versions+19

🔴Vulnerability Details

1
GHSA
GHSA-cq94-7hfr-hgr8: Information disclosure when Video engine escape input data is less than expected minimum size2025-09-24