CVE-2025-47400
Estado: AnalizadaAlta (7.1)—
Cryptographic issue while copying data to a destination buffer without validating its size.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
- Puntuación base: 7.1
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.10%
- Percentil entre todas las CVEs puntuadas: 1
- Fecha de la puntuación: 3/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
🎯 Técnicas ATT&CK
Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.
- Explotación
T1068Exploitation for Privilege Escalationprivilege escalation85 % - Impacto principal
T1005Data from Local Systemcollection75 % - Impacto secundario
T1565.001Stored Data Manipulationimpact70 %
Acceso local (AV:L) sin interacción (UI:N) con PR:L indica escalada. CWE-126 (buffer over-read) en firmware Qualcomm permite leer datos sensibles (C:H) e introducir modificaciones (I:H).
Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.
🛡️ Mitigaciones ATT&CK que cubren estas técnicas
Tecnologías afectadas (11)
Qualcomm — Pandeiro FirmwareQualcomm — Snapdragon 8 Elite GEN 5 FirmwareQualcomm — Sw6100 FirmwareQualcomm — Sw6100p FirmwareQualcomm — Themisto FirmwareQualcomm — Wcd9395 FirmwareQualcomm — Wcn7860 FirmwareQualcomm — Wcn7861 FirmwareQualcomm — Wsa8840 FirmwareQualcomm — Wsa8845 FirmwareQualcomm — Wsa8845h Firmware
CWE
- CWE-126
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2025-47400",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2025-47400",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "no"
},
{
"technicalImpact": "total"
}
],
"version": "2.0.3",
"timestamp": "2026-04-06T00:00:00+00:00"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "product-security@qualcomm.com",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 7.1,
"attackVector": "LOCAL",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "LOW",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.2,
"exploitabilityScore": 1.8
}
]
},
"affected": [
{
"source": "product-security@qualcomm.com",
"affectedData": [
{
"vendor": "Qualcomm, Inc.",
"product": "Snapdragon",
"versions": [
{
"status": "affected",
"version": "Pandeiro"
},
{
"status": "affected",
"version": "Snapdragon 8 Elite Gen 5"
},
{
"status": "affected",
"version": "SW6100"
},
{
"status": "affected",
"version": "SW6100P"
},
{
"status": "affected",
"version": "Themisto"
},
{
"status": "affected",
"version": "WCD9395"
},
{
"status": "affected",
"version": "WCN7860"
},
{
"status": "affected",
"version": "WCN7861"
},
{
"status": "affected",
"version": "WSA8840"
},
{
"status": "affected",
"version": "WSA8845"
},
{
"status": "affected",
"version": "WSA8845H"
}
],
"platforms": [
"Snapdragon Compute",
"Snapdragon Wearables"
],
"defaultStatus": "unaffected"
}
]
}
],
"published": "2026-04-06T16:16:28.590",
"references": [
{
"url": "https://docs.qualcomm.com/product/publicresources/securitybulletin/april-2026-bulletin.html",
"tags": [
"Vendor Advisory"
],
"source": "product-security@qualcomm.com"
}
],
"vulnStatus": "Analyzed",
"weaknesses": [
{
"type": "Secondary",
"source": "product-security@qualcomm.com",
"description": [
{
"lang": "en",
"value": "CWE-126"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Cryptographic issue while copying data to a destination buffer without validating its size."
},
{
"lang": "es",
"value": "Problema criptográfico al copiar datos a un búfer de destino sin validar su tamaño."
}
],
"lastModified": "2026-09-30T22:10:00.273",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:pandeiro_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "23F8EF0C-BB48-47E1-A045-254D79388F75"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:pandeiro:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "058950FC-ED72-4E91-AE13-87E738ADC083"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:snapdragon_8_elite_gen_5_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "41070BDB-15E4-4DD7-A132-A14AA24978E5"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:snapdragon_8_elite_gen_5:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "102460A6-9637-4883-9230-2CC888D5D74E"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:sw6100_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7561D3AA-6719-4D64-9545-C89B070A3E46"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:sw6100:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "673D9178-9F53-4A79-9BC2-1529A00AF995"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:sw6100p_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D8A59464-5093-4F7B-9E38-7021BAD35CF9"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:sw6100p:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "8D1950E8-092C-4622-ABDD-311E7762BDE2"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:themisto_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "55DE7B27-56A2-4046-9E03-8215587C8827"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:themisto:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "0853EA22-4EFD-4037-8B83-CB7C18417D23"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:wcd9395_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "699056F6-1517-4F25-AE07-4FFCF6923B9F"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:wcd9395:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "E4C023D2-6FF5-4FFC-B9F2-895979166580"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:wcn7860_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2EB8794F-7998-424E-AF68-E4A4F9310F65"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:wcn7860:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "799D69CE-3FCC-4B19-8B00-9AF38111D983"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:wcn7861_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "57608D47-894C-4895-B4B3-4733D55D57DB"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:wcn7861:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "2FFD2C38-1A61-4BED-ABFA-DAE0C4B78620"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CA33DE15-C177-43B3-AD50-FF797753D12E"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "AE1A5841-5BCB-4033-ACB9-23F3FCA65309"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "5B47BF35-3AA0-4667-842E-19B0FE30BF3C"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "8A071672-9405-4418-9141-35CEADBB65AF"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "BB7CF473-8B25-4851-91F2-1BD693CCDC85"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "91E591F2-8F72-4A5A-9264-2742EB2DABDA"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
],
"sourceIdentifier": "product-security@qualcomm.com"
}