Cyber Posture

CVE-2025-47394

High

Published: 07 January 2026

Published
07 January 2026
Modified
27 January 2026
KEV Added
Patch
CVSS Score 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score 0.0002 6.3th percentile
Risk Priority 16 60% EPSS · 20% KEV · 20% CVSS

Summary

CVE-2025-47394 is a high-severity Classic Buffer Overflow (CWE-120) vulnerability in Qualcomm Fastconnect 6200 Firmware. Its CVSS base score is 7.8 (High).

Operationally, exploitation aligns with the MITRE ATT&CK technique Exploitation for Privilege Escalation (T1068); ranked at the 6.3th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.

The strongest mitigations our analysis identified are NIST 800-53 SI-16 (Memory Protection) and SI-2 (Flaw Remediation).

Threat & Defense at a Glance

What attackers do: exploitation maps to Exploitation for Privilege Escalation (T1068). What defenders deploy: see the NIST 800-53 controls recommended below.
Threat & Defense Details

Mitigating Controls (NIST 800-53 r5)AI

prevent

Directly requires timely patching and remediation of the specific memory corruption flaw in CVE-2025-47394 as recommended in the Qualcomm bulletin.

prevent

Implements memory protection mechanisms to restrict unauthorized access and detect corruption from incorrect offset calculations during buffer copying operations.

detect

Enables vulnerability scanning to identify the presence of CVE-2025-47394 in Qualcomm products for subsequent remediation.

MITRE ATT&CK Enterprise TechniquesAI

T1068 Exploitation for Privilege Escalation Privilege Escalation
Adversaries may exploit software vulnerabilities in an attempt to elevate privileges.
Why these techniques?

Local memory corruption vulnerability enabling arbitrary code execution from low privileges directly maps to exploitation for privilege escalation.

Confidence: HIGH · MITRE ATT&CK Enterprise v18.1

NVD Description

Memory corruption when copying overlapping buffers during memory operations due to incorrect offset calculations.

Deeper analysisAI

CVE-2025-47394 is a memory corruption vulnerability stemming from incorrect offset calculations when copying overlapping buffers during memory operations. It affects Qualcomm products, as detailed in their security bulletin, and is classified under CWE-120 (Buffer Copy without Checking Size of Input). The vulnerability received a CVSS v3.1 base score of 7.8 (High), reflecting its local attack vector (AV:L), low attack complexity (AC:L), requirement for low privileges (PR:L), lack of user interaction (UI:N), unchanged scope (S:U), and high impacts on confidentiality, integrity, and availability (C:H/I:H/A:H). It was published on 2026-01-07.

A local attacker with low privileges can exploit this vulnerability with low complexity and no user interaction required. Successful exploitation enables high-impact outcomes, including potential arbitrary code execution, data tampering, or denial of service through memory corruption.

The Qualcomm January 2026 security bulletin at https://docs.qualcomm.com/product/publicresources/securitybulletin/january-2026-bulletin.html provides details on affected products and recommended mitigations, such as applying available patches.

Details

CWE(s)

Affected Products

qualcomm
fastconnect 6200 firmware
all versions
qualcomm
fastconnect 6700 firmware
all versions
qualcomm
fastconnect 6900 firmware
all versions
qualcomm
fastconnect 7800 firmware
all versions
qualcomm
qcs610 firmware
all versions
qualcomm
qmp1000 firmware
all versions
qualcomm
sg6150 firmware
all versions
qualcomm
sg6150p firmware
all versions
qualcomm
sm6475 firmware
all versions
qualcomm
sm7435 firmware
all versions
+35 more product configuration(s) — see NVD for full list

CVEs Like This One

CVE-2025-47388Same product: Qualcomm Fastconnect 6200
CVE-2025-47396Same product: Qualcomm Fastconnect 6200
CVE-2025-47389Same product: Qualcomm Fastconnect 6200
CVE-2026-21382Same product: Qualcomm Fastconnect 6900
CVE-2025-47399Same product: Qualcomm Fastconnect 7800
CVE-2024-49843Same product: Qualcomm Fastconnect 6200
CVE-2024-49836Same product: Qualcomm Fastconnect 6900
CVE-2025-47385Same product: Qualcomm Fastconnect 6200
CVE-2024-49832Same product: Qualcomm Fastconnect 6900
CVE-2025-47407Same product: Qualcomm Fastconnect 6200

References