CVE-2025-21427: Buffer Over-read in Data HLOS - LNX
Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-21427?
CVE-2025-21427 has been classified with a severity rating that indicates a potential information disclosure risk when decoding RTP packet payloads.
How do I fix CVE-2025-21427?
To fix CVE-2025-21427, users should apply the appropriate patches or updates provided by Qualcomm for the affected firmware versions.
What devices are affected by CVE-2025-21427?
CVE-2025-21427 affects various Qualcomm devices including the Snapdragon series and other supported firmware models.
Is CVE-2025-21427 exploitable remotely?
Yes, CVE-2025-21427 can potentially be exploited remotely if the affected devices receive malicious RTP packets from a network.
What types of vulnerabilities does CVE-2025-21427 represent?
CVE-2025-21427 represents an information disclosure vulnerability that can arise from improper handling of RTP packet payloads.