CVE-2025-47325: Untrusted Pointer Dereference in TZ Firmware

Published Dec 18, 2025
·
Updated

Information disclosure while processing system calls with invalid parameters.

Affected Software

88 affected components
All of the following
Qualcomm Csr8811 Firmware
Qualcomm Csr8811
All of the following
Qualcomm Ipq8070 Firmware
Qualcomm Ipq8070
All of the following
Qualcomm Ipq8070a Firmware
Qualcomm Ipq8070a
All of the following
Qualcomm Ipq8071 Firmware
Qualcomm Ipq8071
All of the following
Qualcomm Ipq8071a Firmware
Qualcomm Ipq8071a
All of the following
Qualcomm Ipq8072 Firmware
Qualcomm Ipq8072
All of the following
Qualcomm Ipq8072a Firmware
Qualcomm Ipq8072a
All of the following
Qualcomm Ipq8074 Firmware
Qualcomm IPQ8074
All of the following
Qualcomm Ipq8074a Firmware
Qualcomm Ipq8074a
All of the following
Qualcomm Ipq8076 Firmware
Qualcomm Ipq8076
All of the following
Qualcomm Ipq8076a Firmware
Qualcomm Ipq8076a
All of the following
Qualcomm Ipq8078 Firmware
Qualcomm Ipq8078
All of the following
Qualcomm Ipq8078a Firmware
Qualcomm Ipq8078a
All of the following
Qualcomm Ipq8173 Firmware
Qualcomm Ipq8173
All of the following
Qualcomm Ipq8174 Firmware
Qualcomm Ipq8174
All of the following
Qualcomm Pmp8074 Firmware
Qualcomm Pmp8074
All of the following
Qualcomm Qca4024 Firmware
Qualcomm Qca4024
All of the following
Qualcomm Qca6428 Firmware
Qualcomm Qca6428
All of the following
Qualcomm Qca6438 Firmware
Qualcomm Qca6438
All of the following
Qualcomm Qca8072 Firmware
Qualcomm Qca8072
All of the following
Qualcomm Qca8075 Firmware
Qualcomm Qca8075
All of the following
Qualcomm Qca8081 Firmware
Qualcomm QCA8081
All of the following
Qualcomm Qca9888 Firmware
Qualcomm Qca9888
All of the following
Qualcomm Qca9889 Firmware
Qualcomm Qca9889
All of the following
Qualcomm Qcn5022 Firmware
Qualcomm Qcn5022
All of the following
Qualcomm Qcn5024 Firmware
Qualcomm Qcn5024
All of the following
Qualcomm Qcn5052 Firmware
Qualcomm Qcn5052
All of the following
Qualcomm Qcn5054 Firmware
Qualcomm Qcn5054
All of the following
Qualcomm Qcn5064 Firmware
Qualcomm Qcn5064
All of the following
Qualcomm Qcn5122 Firmware
Qualcomm Qcn5122
All of the following
Qualcomm Qcn5124 Firmware
Qualcomm Qcn5124
All of the following
Qualcomm Qcn5152 Firmware
Qualcomm Qcn5152
All of the following
Qualcomm Qcn5154 Firmware
Qualcomm Qcn5154
All of the following
Qualcomm Qcn5164 Firmware
Qualcomm Qcn5164
All of the following
Qualcomm Qcn5550 Firmware
Qualcomm Qcn5550
All of the following
Qualcomm Qcn6023 Firmware
Qualcomm Qcn6023
All of the following
Qualcomm Qcn6024 Firmware
Qualcomm Qcn6024
All of the following
Qualcomm Qcn9000 Firmware
Qualcomm Qcn9000
All of the following
Qualcomm Qcn9022 Firmware
Qualcomm Qcn9022
All of the following
Qualcomm Qcn9024 Firmware
Qualcomm Qcn9024
All of the following
Qualcomm Qcn9070 Firmware
Qualcomm Qcn9070
All of the following
Qualcomm Qcn9072 Firmware
Qualcomm Qcn9072
All of the following
Qualcomm Qcn9074 Firmware
Qualcomm Qcn9074
All of the following
Qualcomm Sdx55 Firmware
Qualcomm Sdx55

Event History

Dec 18, 2025
CVE Published
via MITRE·05:29 AM
Data Sourced
via MITRE·05:29 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 AM
DescriptionSeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2025-47325?

The severity of CVE-2025-47325 is categorized as medium due to potential information disclosure risks.

2

How do I fix CVE-2025-47325?

To fix CVE-2025-47325, you should update to the latest version of the affected Qualcomm firmware.

3

Which devices are affected by CVE-2025-47325?

CVE-2025-47325 affects various Qualcomm firmware versions associated with devices such as CSR8811, IPQ8070, and others.

4

What can an attacker do with CVE-2025-47325?

An attacker exploiting CVE-2025-47325 could potentially gain unauthorized access to sensitive system information.

5

How was CVE-2025-47325 discovered?

CVE-2025-47325 was discovered during routine security assessments of Qualcomm firmware exposed to invalid system call parameters.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203