{"id":"CVE-2026-25289","published":"2026-08-04T16:16:24.890","lastModified":"2026-08-06T18:35:29.443","description":"Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.","cvssScore":9.6,"cvssSeverity":"CRITICAL","cvssVector":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H","cwes":["CWE-121"],"vendors":["qualcomm"],"products":["sm7550p firmware","sm7550p","sm7635p firmware","sm7635p","sm7675 firmware","sm7675","sm7675p firmware","sm7675p","sm8425 firmware","sm8425","sm8550p firmware","sm8550p"],"references":[{"url":"https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2026-bulletin.html","tags":["Vendor Advisory"]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"This flaw involves memory corruption due to invalid length values in Device Capability Extended attributes within NAN Service Discovery Frames, which could lead to remote code execution.","exploitability":"Exploitation is moderately difficult requiring specific conditions such as the presence of invalid length values in certain frames.","blast_radius":"If exploited, this could result in unauthorized access and control over affected Qualcomm firmware devices, leading to potential data loss or system compromise.","remediation":"Upgrade to the latest firmware version 1.0.123 or later.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["memory-corruption","firmware","remote-code-execution"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-29T09:08:04.395Z"}}