
CVE-2025-27076 – Time-of-check Time-of-use (TOCTOU) Race Condition in Display
https://notcve.org/view.php?id=CVE-2025-27076
06 Aug 2025 — Memory corruption while processing simultaneous requests via escape path. Corrupción de memoria al procesar solicitudes simultáneas a través de la ruta de escape. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html • CWE-367: Time-of-check Time-of-use (TOCTOU) Race Condition •

CVE-2025-27075 – Improper Validation of Array Index in Bluetooth HOST
https://notcve.org/view.php?id=CVE-2025-27075
06 Aug 2025 — Memory corruption while processing IOCTL command with larger buffer in Bluetooth Host. Corrupción de memoria al procesar el comando IOCTL con un búfer más grande en el host Bluetooth. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html • CWE-129: Improper Validation of Array Index •

CVE-2025-27073 – Reachable Assertion in WLAN Firmware
https://notcve.org/view.php?id=CVE-2025-27073
06 Aug 2025 — Transient DOS while creating NDP instance. DOS transitorio al crear una instancia de NDP. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html • CWE-617: Reachable Assertion •

CVE-2025-27071 – Buffer Copy Without Checking Size of Input in Powerline Communication Firmware
https://notcve.org/view.php?id=CVE-2025-27071
06 Aug 2025 — Memory corruption while processing specific files in Powerline Communication Firmware. Corrupción de memoria al procesar archivos específicos en Powerline Communication Firmware. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2025-27068 – Buffer Over-read in Camera
https://notcve.org/view.php?id=CVE-2025-27068
06 Aug 2025 — Memory corruption while processing an IOCTL command with an arbitrary address. Corrupción de memoria al procesar un comando IOCTL con una dirección arbitraria. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2025-27066 – Reachable Assertion in WLAN Firmware
https://notcve.org/view.php?id=CVE-2025-27066
06 Aug 2025 — Transient DOS while processing an ANQP message. DOS transitorio al procesar un mensaje ANQP. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html • CWE-617: Reachable Assertion •

CVE-2025-27065 – Buffer Over-read in WLAN Firmware
https://notcve.org/view.php?id=CVE-2025-27065
06 Aug 2025 — Transient DOS while processing a frame with malformed shared-key descriptor. DOS transitorio mientras se procesa un marco con un descriptor de clave compartida mal formado. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2025-27062 – Improper Access Control in Automotive Multimedia
https://notcve.org/view.php?id=CVE-2025-27062
06 Aug 2025 — Memory corruption while handling client exceptions, allowing unauthorized channel access. Corrupción de memoria durante el manejo de excepciones del cliente, lo que permite acceso no autorizado al canal. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html • CWE-284: Improper Access Control •

CVE-2025-21477 – Improper Input Validation in Modem
https://notcve.org/view.php?id=CVE-2025-21477
06 Aug 2025 — Transient DOS while processing CCCH data when NW sends data with invalid length. DOS transitorio al procesar datos CCCH cuando NW envía datos con una longitud no válida. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html • CWE-20: Improper Input Validation •

CVE-2025-21465 – Out-of-bounds Read in Core
https://notcve.org/view.php?id=CVE-2025-21465
06 Aug 2025 — Information disclosure while processing the hash segment in an MBN file. Divulgación de información durante el procesamiento del segmento hash en un archivo MBN. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2025-bulletin.html • CWE-125: Out-of-bounds Read •