
CVE-2025-27061 – Out-of-bounds Write in Video
https://notcve.org/view.php?id=CVE-2025-27061
08 Jul 2025 — Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware. • https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html • CWE-787: Out-of-bounds Write •

CVE-2025-27052 – Buffer Copy Without Checking Size of Input in Core Services
https://notcve.org/view.php?id=CVE-2025-27052
08 Jul 2025 — Memory corruption while processing data packets in diag received from Unix clients. • https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2025-27043 – Buffer Copy Without Checking Size of Input in Video
https://notcve.org/view.php?id=CVE-2025-27043
08 Jul 2025 — Memory corruption while processing manipulated payload in video firmware. • https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2025-27042 – Incorrect Calculation of Buffer Size in Video
https://notcve.org/view.php?id=CVE-2025-27042
08 Jul 2025 — Memory corruption while processing video packets received from video firmware. • https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html • CWE-131: Incorrect Calculation of Buffer Size •

CVE-2025-21454 – Buffer Over-read in WLAN Embedded SW
https://notcve.org/view.php?id=CVE-2025-21454
08 Jul 2025 — Transient DOS while processing received beacon frame. • https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2025-21449 – Buffer Over-read in WLAN Embedded SW
https://notcve.org/view.php?id=CVE-2025-21449
08 Jul 2025 — Transient DOS may occur while processing malformed length field in SSID IEs. • https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2025-21446 – Buffer Over-read in WLAN Firmware
https://notcve.org/view.php?id=CVE-2025-21446
08 Jul 2025 — Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests. • https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html • CWE-126: Buffer Over-read •

CVE-2025-21433 – NULL Pointer Dereference in SPS-HLOS
https://notcve.org/view.php?id=CVE-2025-21433
08 Jul 2025 — Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus. • https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html • CWE-476: NULL Pointer Dereference •

CVE-2025-21432 – Double Free in SPS-HLOS
https://notcve.org/view.php?id=CVE-2025-21432
08 Jul 2025 — Memory corruption while retrieving the CBOR data from TA. • https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html • CWE-415: Double Free •

CVE-2025-21427 – Buffer Over-read in Data HLOS - LNX
https://notcve.org/view.php?id=CVE-2025-21427
08 Jul 2025 — Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network. • https://docs.qualcomm.com/product/publicresources/securitybulletin/july-2025-bulletin.html • CWE-126: Buffer Over-read •