Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
High

Memory corruption in Qualcomm satellite data file decoding

IdentifiersCVE-2025-47392CWE-190· Integer Overflow or Wraparound

CVE-2025-47392 is a critical memory corruption vulnerability in a Qualcomm closed-source component. According to the provided Qualcomm vulnerability history entry, the flaw is triggered when the affected component decodes corrupted satellite data files containing invalid signature offsets. The issue is mapped to CWE-190, indicating an integer overflow or wraparound condition is implicated in the faulty handling of signature offsets during parsing/decoding, which can lead to memory corruption.

Share:
For your environment

Are you exposed to this one?

Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities matter for you, not just which ones are loud.

ANALYST BRIEF

Impact, mitigation & remediation

What it means. What to do now. Patch path, mitigations, and the assume-compromise checklist.

Impact

What an attacker gets, and what they’ve been doing with it.

Successful exploitation can cause memory corruption in the vulnerable Qualcomm component, with potential high impact to confidentiality, integrity, and availability. The provided CVSS v3.1 vector (AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) indicates exploitation is low complexity, requires no privileges and no user interaction, and may result in severe compromise of the affected component, including possible code execution or complete compromise of the vulnerable processing context, as well as denial of service.

Mitigation

If you can’t patch tonight, do this now.

Until patched firmware or OEM security updates are installed, reduce exposure by limiting attack paths that can deliver malformed satellite data to the vulnerable component. Because the CVSS vector specifies adjacent attack exposure (AV:A), mitigation should focus on restricting nearby/adjacent interfaces and any feature paths that process satellite data files where operationally feasible. Definitive mitigation guidance beyond patching is not available in the provided content.

Remediation

Patch, then assume compromise.

Apply the vendor-provided fix from Qualcomm referenced in its April 2026 security bulletin, and deploy Android security updates that include the Qualcomm closed-source component patch. The provided context indicates Google incorporated fixes for this issue in the June 2026 Android security release, and Samsung also included a fix in its April 2026 Security Maintenance Release for affected devices.
PUBLIC EXPLOITS

Exploits

No public exploits tracked yet. Mallory keeps watching.

VALID 0 / 0 TOTALView more in app

No public exploit code observed for this vulnerability.

EXPOSURE SURFACE

Affected products & vendors

Products and vendors Mallory has correlated with this vulnerability. Open in Mallory to drill down to specific CPE configurations and version ranges.

VendorProductType
Qualcomm5g Fixed Wireless Access Platform Firmwareoperating_system
QualcommAr8035 Firmwareoperating_system
QualcommCsra6620 Firmwareoperating_system
QualcommCsra6640 Firmwareoperating_system
QualcommFastconnect 6200 Firmwareoperating_system
QualcommFastconnect 6700 Firmwareoperating_system
QualcommFastconnect 6800 Firmwareoperating_system
QualcommFastconnect 6900 Firmwareoperating_system
QualcommFastconnect 7800 Firmwareoperating_system
QualcommFsm200 Platform Firmwareoperating_system
QualcommFsm20055 Firmwareoperating_system
QualcommFwa Gen 3 Ultra Firmwareoperating_system
QualcommG1 Gen 1 Firmwareoperating_system
QualcommMilos Firmwareoperating_system
QualcommNetrani Firmwareoperating_system
QualcommOrne Firmwareoperating_system
QualcommPalawan25 Firmwareoperating_system
QualcommQca6174a Firmwareoperating_system
QualcommQca6391 Firmwareoperating_system
QualcommQca6574a Firmwareoperating_system
QualcommQca6574au Firmwareoperating_system
QualcommQca6584au Firmwareoperating_system
QualcommQca6595au Firmwareoperating_system
QualcommQca6678aq Firmwareoperating_system
QualcommQca6688aq Firmwareoperating_system
QualcommQca6696 Firmwareoperating_system
QualcommQca6698aq Firmwareoperating_system
QualcommQca6698au Firmwareoperating_system
QualcommQca6797aq Firmwareoperating_system
QualcommQca8081 Firmwareoperating_system
QualcommQca8337 Firmwareoperating_system
QualcommQcc710 Firmwareoperating_system
QualcommQcm2290 Firmwareoperating_system
QualcommQcm4325 Firmwareoperating_system
QualcommQcm4490 Firmwareoperating_system
QualcommQcm5430 Firmwareoperating_system
QualcommQcm6490 Firmwareoperating_system
QualcommQcn6024 Firmwareoperating_system
QualcommQcn6224 Firmwareoperating_system
QualcommQcn6274 Firmwareoperating_system
QualcommQcn9011 Firmwareoperating_system
QualcommQcn9012 Firmwareoperating_system
QualcommQcn9024 Firmwareoperating_system
QualcommQcs2290 Firmwareoperating_system
QualcommQcs4290 Firmwareoperating_system
QualcommQcs4490 Firmwareoperating_system
QualcommQcs8550 Firmwareoperating_system
QualcommQep8111 Firmwareoperating_system
QualcommQfw7114 Firmwareoperating_system
QualcommQfw7124 Firmwareoperating_system
QualcommQmp1000 Firmwareoperating_system
QualcommRobotics Rb2 Platform Firmwareoperating_system
QualcommSd 8 Gen1 5g Firmwareoperating_system
QualcommSd662 Firmwareoperating_system
QualcommSdx57m Firmwareoperating_system
QualcommSdx61 Firmwareoperating_system
QualcommSdx71m Firmwareoperating_system
QualcommSm6225p Firmwareoperating_system
QualcommSm6250 Firmwareoperating_system
QualcommSm6650p Firmwareoperating_system
QualcommSm7325p Firmwareoperating_system
QualcommSm7435 Firmwareoperating_system
QualcommSm7550 Firmwareoperating_system
QualcommSm7550p Firmwareoperating_system
QualcommSm7635p Firmwareoperating_system
QualcommSm7675 Firmwareoperating_system
QualcommSm7675p Firmwareoperating_system
QualcommSm8475p Firmwareoperating_system
QualcommSm8550p Firmwareoperating_system
QualcommSm8635 Firmwareoperating_system
QualcommSm8635p Firmwareoperating_system
QualcommSm8650q Firmwareoperating_system
QualcommSm8750p Firmwareoperating_system
QualcommSnapdragon 4 Gen 1 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 4 Gen 2 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 460 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 480 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 480+ 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 6 Gen 1 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 6 Gen 3 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 6 Gen 4 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 662 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 680 4g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 685 4g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 690 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 695 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 7 Gen 1 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 7+ Gen 2 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 778g 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 778g+ 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 782g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 7c Compute Platform Firmwareoperating_system
QualcommSnapdragon 7c Gen 2 Compute Platform Firmwareoperating_system
QualcommSnapdragon 7c+ Gen 3 Compute Firmwareoperating_system
QualcommSnapdragon 7s Gen 3 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 8 Elite Firmwareoperating_system
QualcommSnapdragon 8 Gen 1 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 8 Gen 2 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 8 Gen 3 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 8+ Gen 1 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 8+ Gen 2 Mobile Platform Firmwareoperating_system
QualcommSnapdragon 865 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 865+ 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 870 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 888 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon 888+ 5g Mobile Platform Firmwareoperating_system
QualcommSnapdragon Auto 5g Modem-Rf Firmwareoperating_system
QualcommSnapdragon Auto 5g Modem-Rf Gen 2 Firmwareoperating_system
QualcommSnapdragon W5+ Gen 1 Wearable Platform Firmwareoperating_system
QualcommSnapdragon X32 5g Modem-Rf System Firmwareoperating_system
QualcommSnapdragon X35 5g Modem-Rf System Firmwareoperating_system
QualcommSnapdragon X53 5g Modem-Rf System Firmwareoperating_system
QualcommSnapdragon X55 5g Modem-Rf System Firmwareoperating_system
QualcommSnapdragon X65 5g Modem-Rf System Firmwareoperating_system
QualcommSnapdragon X70 Modem-Rf System Firmwareoperating_system
QualcommSnapdragon X72 5g Modem-Rf System Firmwareoperating_system
QualcommSnapdragon X75 5g Modem-Rf System Firmwareoperating_system
QualcommSnapdragon X80 5g Modem-Rf System Firmwareoperating_system
QualcommSw5100 Firmwareoperating_system
QualcommSw5100p Firmwareoperating_system
QualcommSw6100 Firmwareoperating_system
QualcommSw6100p Firmwareoperating_system
QualcommThemisto Firmwareoperating_system
QualcommVideo Collaboration Vc3 Platform Firmwareoperating_system
QualcommWcd9335 Firmwareoperating_system
QualcommWcd9340 Firmwareoperating_system
QualcommWcd9341 Firmwareoperating_system
QualcommWcd9360 Firmwareoperating_system
QualcommWcd9370 Firmwareoperating_system
QualcommWcd9371 Firmwareoperating_system
QualcommWcd9375 Firmwareoperating_system
QualcommWcd9378 Firmwareoperating_system
QualcommWcd9380 Firmwareoperating_system
QualcommWcd9385 Firmwareoperating_system
QualcommWcd9390 Firmwareoperating_system
QualcommWcd9395 Firmwareoperating_system
QualcommWcn3910 Firmwareoperating_system
QualcommWcn3950 Firmwareoperating_system
QualcommWcn3980 Firmwareoperating_system
QualcommWcn3988 Firmwareoperating_system
QualcommWcn6650 Firmwareoperating_system
QualcommWcn6755 Firmwareoperating_system
QualcommWcn7860 Firmwareoperating_system
QualcommWcn7861 Firmwareoperating_system
QualcommWcn7880 Firmwareoperating_system
QualcommWcn7881 Firmwareoperating_system
QualcommWsa8810 Firmwareoperating_system
QualcommWsa8815 Firmwareoperating_system
QualcommWsa8830 Firmwareoperating_system
QualcommWsa8832 Firmwareoperating_system
QualcommWsa8835 Firmwareoperating_system
QualcommWsa8840 Firmwareoperating_system
QualcommWsa8845 Firmwareoperating_system
QualcommWsa8845h Firmwareoperating_system

Vendor-confirmed product mapping. Mallory continuously reconciles this list against your asset inventory.

What this page doesn’t show

The version that knows your environment.

This page is what’s public. Mallory adds the parts that aren’t: which of your assets are affected, which adversaries are exploiting it right now, which detections to deploy, and what to do tonight.
Exposure mapping

Query your assets running an affected version, and investigate the blast radius.

Threat actor evidence

Every observed campaign linking this CVE to a named adversary.

Associated malware

Malware families riding this exploit, with evidence and IOCs.

Detection signatures

YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.

Vendor-by-vendor mapping

Cross-references every affected SKU, including bundled OEM variants.

Social activity5

Community discussion across Reddit, Mastodon, and other social sources.