CVE-2025-47407: Time-of-check Time-of-use (TOCTOU) Race Condition in DSP Service
Memory corruption while creating a process on the digital signal processor due to allocation failure at the kernel level.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2025-47407?
The severity rating of CVE-2025-47407 is moderate due to the memory corruption issues caused by a Time-of-check Time-of-use (TOCTOU) race condition.
How do I fix CVE-2025-47407?
To address CVE-2025-47407, ensure that you apply the latest firmware updates provided by Qualcomm for the affected devices.
What types of devices are affected by CVE-2025-47407?
CVE-2025-47407 affects Qualcomm DSP services in products such as the Qualcomm Cq7790 and Cq8725s firmware among others.
What are the potential impacts of CVE-2025-47407?
The potential impacts of CVE-2025-47407 include system crashes and the execution of arbitrary code due to memory corruption.
Is there a workaround for CVE-2025-47407?
Currently, no specific workarounds are recommended for CVE-2025-47407 aside from applying the necessary firmware updates.