Cyber Posture

CVE-2025-47397

High

Published: 02 February 2026

Published
02 February 2026
Modified
11 February 2026
KEV Added
Patch
CVSS Score 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score 0.0001 0.4th percentile
Risk Priority 16 60% EPSS · 20% KEV · 20% CVSS

Summary

CVE-2025-47397 is a high-severity Missing Release of Memory after Effective Lifetime (CWE-401) vulnerability in Qualcomm Ar8031 Firmware. Its CVSS base score is 7.8 (High).

Operationally, exploitation aligns with the MITRE ATT&CK technique Exploitation for Privilege Escalation (T1068); ranked at the 0.4th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.

The strongest mitigations our analysis identified are NIST 800-53 SI-10 (Information Input Validation) and SI-16 (Memory Protection).

Threat & Defense at a Glance

What attackers do: exploitation maps to Exploitation for Privilege Escalation (T1068). What defenders deploy: see the NIST 800-53 controls recommended below.
Threat & Defense Details

Mitigating Controls (NIST 800-53 r5)AI

prevent

Implements memory protection mechanisms that directly prevent unauthorized memory access and corruption arising from unchecked IOMMU mapping errors in GPU scatter-gather operations.

prevent

Validates scatter-gather list inputs to the GPU memory mapping process, preventing exploitation through malformed or unchecked data leading to IOMMU errors.

prevent

Requires timely flaw remediation via patching for this specific Qualcomm GPU vulnerability, eliminating the unchecked IOMMU mapping error.

MITRE ATT&CK Enterprise TechniquesAI

T1068 Exploitation for Privilege Escalation Privilege Escalation
Adversaries may exploit software vulnerabilities in an attempt to elevate privileges.
Why these techniques?

Local memory corruption vulnerability with low-priv access enabling arbitrary code execution and privilege escalation on affected systems.

Confidence: HIGH · MITRE ATT&CK Enterprise v18.1

NVD Description

Memory Corruption when initiating GPU memory mapping using scatter-gather lists due to unchecked IOMMU mapping errors.

Deeper analysisAI

CVE-2025-47397 is a memory corruption vulnerability that arises when initiating GPU memory mapping using scatter-gather lists due to unchecked IOMMU mapping errors. It is associated with CWE-401 (Memory Leak) and affects components in Qualcomm products, as documented in their security advisories. The vulnerability received a CVSS v3.1 base score of 7.8 (AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H), indicating high severity with significant impacts on confidentiality, integrity, and availability.

A local attacker with low privileges can exploit this vulnerability with low attack complexity and no user interaction required. Exploitation involves triggering the faulty GPU memory mapping process, leading to memory corruption that could enable arbitrary code execution, data tampering, or system crashes within the affected scope.

The Qualcomm February 2026 security bulletin provides details on affected products and mitigation, available at https://docs.qualcomm.com/product/publicresources/securitybulletin/february-2026-bulletin.html. Security practitioners should consult this advisory for patch information and apply updates promptly to vulnerable devices.

Details

CWE(s)

Affected Products

qualcomm
ar8031 firmware
all versions
qualcomm
csra6620 firmware
all versions
qualcomm
csra6640 firmware
all versions
qualcomm
fastconnect 6200 firmware
all versions
qualcomm
fastconnect 6700 firmware
all versions
qualcomm
wcd9390 firmware
all versions
qualcomm
wcd9395 firmware
all versions
qualcomm
wcn3910 firmware
all versions
qualcomm
wcn3950 firmware
all versions
qualcomm
wcn3980 firmware
all versions
+137 more product configuration(s) — see NVD for full list

CVEs Like This One

CVE-2025-47398Same product: Qualcomm Ar8031
CVE-2026-24082Same product: Qualcomm Ar8031
CVE-2025-47391Same product: Qualcomm Fastconnect 6200
CVE-2025-59600Same product: Qualcomm Ar8031
CVE-2024-49834Same product: Qualcomm Csra6620
CVE-2025-47377Same product: Qualcomm Fastconnect 6200
CVE-2025-47373Same product: Qualcomm Fastconnect 6200
CVE-2026-21385Same product: Qualcomm Ar8031
CVE-2024-53024Same product: Qualcomm Csra6620
CVE-2024-49833Same product: Qualcomm Fastconnect 6700

References