CVE-2026-21368
published 2026-07-06CVE-2026-21368: Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.
PriorityP429medium5.3CVSS 3.1
AVLACHPRLUINSCCLILAL
EPSS
0.06%
0.0th percentile
Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.
Affected
91 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
| qualcomm_inc | snapdragon | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.
ghsa_unreviewed·2026-07-06
CVE-2026-21368 [MEDIUM] CWE-787 Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.
Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.
VulDB
Qualcomm Snapdragon Auto memory corruption
vuldb·2026-07-06·CVSS 5.3
CVE-2026-21368 [MEDIUM] Qualcomm Snapdragon Auto memory corruption
A vulnerability has been found in Qualcomm Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT and Snapdragon Mobile and classified as critical. Affected by this vulnerability is an unknown functionality. This manipulation causes memory corruption.
The identification of this vulnerability is CVE-2026-21368. The attack needs to be done within the local network. There is no exploit available.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-07-06
Published