Cyber Posture

CVE-2025-47346

High

Published: 07 January 2026

Published
07 January 2026
Modified
27 January 2026
KEV Added
Patch
CVSS Score 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score 0.0002 6.3th percentile
Risk Priority 16 60% EPSS · 20% KEV · 20% CVSS

Summary

CVE-2025-47346 is a high-severity Out-of-bounds Write (CWE-787) vulnerability in Qualcomm Sa8145P Firmware. Its CVSS base score is 7.8 (High).

Operationally, exploitation aligns with the MITRE ATT&CK technique Exploitation for Privilege Escalation (T1068); ranked at the 6.3th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.

The strongest mitigations our analysis identified are NIST 800-53 SI-10 (Information Input Validation) and SI-16 (Memory Protection).

Threat & Defense at a Glance

What attackers do: exploitation maps to Exploitation for Privilege Escalation (T1068). What defenders deploy: see the NIST 800-53 controls recommended below.
Threat & Defense Details

Mitigating Controls (NIST 800-53 r5)AI

prevent

Implements memory protection mechanisms such as address space layout randomization and stack guards to directly prevent exploitation of out-of-bounds write vulnerabilities like CVE-2025-47346.

prevent

Requires validation of inputs to the secure logging command processing in the trusted application to block malformed data causing memory corruption.

prevent

Mandates timely flaw remediation through patching of the memory corruption vulnerability in Qualcomm trusted applications as detailed in their security bulletin.

MITRE ATT&CK Enterprise TechniquesAI

T1068 Exploitation for Privilege Escalation Privilege Escalation
Adversaries may exploit software vulnerabilities in an attempt to elevate privileges.
Why these techniques?

Local memory corruption (out-of-bounds write) in trusted application directly enables privilege escalation from low-privileged local context to arbitrary code execution and full control within the TEE.

Confidence: HIGH · MITRE ATT&CK Enterprise v18.1

NVD Description

Memory corruption while processing a secure logging command in the trusted application.

Deeper analysisAI

CVE-2025-47346 is a memory corruption vulnerability, classified under CWE-787 (Out-of-bounds Write), that occurs while processing a secure logging command in the trusted application. It was published on 2026-01-07 and carries a CVSS v3.1 base score of 7.8 (AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H), reflecting high severity due to significant impacts on confidentiality, integrity, and availability. The vulnerability affects components in Qualcomm products, as referenced in their security documentation.

A local attacker with low privileges can exploit this issue through low-complexity attacks requiring no user interaction. Exploitation targets the trusted application during secure logging command processing, potentially enabling full control over the affected component, including arbitrary code execution, data tampering, or denial of service within the trusted execution environment.

Qualcomm's January 2026 security bulletin at https://docs.qualcomm.com/product/publicresources/securitybulletin/january-2026-bulletin.html provides details on affected products and recommended mitigations or patches.

Details

CWE(s)

Affected Products

qualcomm
sa8145p firmware
all versions
qualcomm
sa8150p firmware
all versions
qualcomm
sa8155p firmware
all versions
qualcomm
sa8195p firmware
all versions
qualcomm
sa8255p firmware
all versions
qualcomm
sa8295p firmware
all versions
qualcomm
sa8540p firmware
all versions
qualcomm
sa8620p firmware
all versions
qualcomm
sa8650p firmware
all versions
qualcomm
sa8770p firmware
all versions
+103 more product configuration(s) — see NVD for full list

CVEs Like This One

CVE-2025-47373Same product: Qualcomm Ar8035
CVE-2025-47345Same product: Qualcomm Ar8035
CVE-2025-47339Same product: Qualcomm Ar8035
CVE-2025-59603Same product: Qualcomm Fastconnect 6900
CVE-2024-53030Same product: Qualcomm Qam8255P
CVE-2025-47348Same product: Qualcomm Ar8035
CVE-2025-47389Same product: Qualcomm Ar8035
CVE-2024-53012Same product: Qualcomm Qam8255P
CVE-2024-53031Same product: Qualcomm Qam8255P
CVE-2025-47377Same product: Qualcomm Ar8035

References