CVE-2025-59606

high
Published 2026-06-01 ยท Modified 2026-06-03
CVSS v3
7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
7.8

Description

Memory Corruption when writing to invalid memory locations occurs due to heap memory exhaustion during secure data initialization.

Predictions

Exploit likelihood
75%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Application impact

VendorProductVersionsFixed
qualcommcologne-
qualcommcq7790-
qualcommcq8725s-
qualcommcq8750m-
qualcommfastconnect_6200-
qualcommwsa8840-
qualcommwsa8845-
qualcommwsa8845h-
qualcommwsa8850-
qualcommwsa8850w-
qualcommwsa8855c-
qualcommx2000077-
qualcommx2000086-
qualcommx2000090-
qualcommx2000092-
qualcommx2000094-
qualcommxg101002-
qualcommxg101032-
qualcommxg101039-
qualcommxrv7209-
qualcommxrv9209-
qualcommfastconnect_6700-
qualcommfastconnect_6900-
qualcommfastconnect_7800-
qualcommg2_gen_1-
qualcommiq-615-
qualcommiq-8275-
qualcommiq-9075-
qualcommlemans_au_lgit-
qualcommlemansau-
qualcommmolokai-
qualcommmonaco_iot-
qualcommnetrani-
qualcommorne-
qualcommpalawan25-
qualcommpandeiro-
qualcommqam8255p-
qualcommqam8295p-
qualcommqam8397p-
qualcommqam8620p-
qualcommqam8797p-
qualcommqamsrv1h-
qualcommqamsrv1m-
qualcommqca6574-
qualcommqca6574a-
qualcommqca6574au-
qualcommqca6595-
qualcommqca6595au-
qualcommqca6678aq-
qualcommqca6688aq-
qualcommqca6696-
qualcommqca6698aq-
qualcommqca6797aq-
qualcommqca8695au-
qualcommqcm5430-
qualcommqcm6490-
qualcommqcm8838-
qualcommqdu1000-
qualcommqdu1110-
qualcommqdu1210-
qualcommqdx1010-
qualcommqdx1011-
qualcommqln1083bd-
qualcommqln1086bd-
qualcommqmb715-
qualcommqmp1000-
qualcommqmp2001-
qualcommqpa1083bd-
qualcommqpa1086bd-
qualcommqualcomm_dragonwing_x100_accelerator_card-
qualcommvideo_collaboration_vc3_platform-
qualcommqxm1093-
qualcommqxm1094-
qualcommqxm1095-
qualcommqxm1096-
qualcommsa6145p-
qualcommsa6150p-
qualcommsa6155p-
qualcommsa7255p-
qualcommsa7775p-
qualcommsa8145p-
qualcommsa8150p-
qualcommsa8155p-
qualcommsa8195p-
qualcommsa8255p-
qualcommsa8295p-
qualcommsa8540p-
qualcommsa8620p-
qualcommsa8770p-
qualcommsa9000p-
qualcommsdr753-
qualcommsm4850-
qualcommsm4850p-
qualcommsm6450p-
qualcommsm6475p-
qualcommsm6475q-
qualcommsm6850-
qualcommsm7435-
qualcommsm7435p-
qualcommsm7635p-
qualcommsm8735p-
qualcommsm8750p-
qualcommsm8845p-
qualcommsnapdragon_4_gen_2_mobile_platform-
qualcommsnapdragon_460_mobile_platform-
qualcommsnapdragon_6_gen_1_mobile_platform-
qualcommsnapdragon_6_gen_3_mobile_platform-
qualcommsnapdragon_662_mobile_platform-
qualcommsnapdragon_680_4g_mobile_platform-
qualcommsnapdragon_685_4g_mobile_platform-
qualcommsnapdragon_7_gen_4_mobile_platform-
qualcommsnapdragon_8_elite-
qualcommsnapdragon_8_elite_gen_5-
qualcommsnapdragon_wear_elite_platform-
qualcommsrv1h-
qualcommsrv1l-
qualcommsrv1m-
qualcommsxr2330p-
qualcommsxr2350p-
qualcommthemisto-
qualcommwcd9370-
qualcommwcd9375-
qualcommwcd9378-
qualcommwcd9378c-
qualcommwcd9380-
qualcommwcd9385-
qualcommwcd9395-
qualcommwcn3950-
qualcommwcn3988-
qualcommwcn6450-
qualcommwcn6755-
qualcommwcn7760-
qualcommwcn7860-
qualcommwcn7861-
qualcommwcn7880-
qualcommwcn7881-
qualcommwsa8810-
qualcommwsa8815-
qualcommwsa8830-
qualcommwsa8832-
qualcommwsa8835-

References

CWEs

CWE-476

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.