BDU:2026-02466
Уязвимость микропрограммного обеспечения встраиваемых плат Qualcomm, связанная с целочисленным переполнением при обработке параметра al__cpLocation, позволяющая нарушителю повысить свои привилегии
📄 Описание
Уязвимость микропрограммного обеспечения встраиваемых плат Qualcomm связана с целочисленным переполнением при обработке параметра al__cpLocation. Эксплуатация уязвимости может позволить нарушителю повысить свои привилегии
🖥️ Уязвимое ПО
Qualcomm Technologies Inc.
Наименование ПО: SD 8 Gen1 5G, WCD9380, WSA8830, WSA8835, AR8031, AR8035, CSRA6620, CSRA6640, SD662, SM8475P, WCD9371, APQ8098, SDA660, Snapdragon 429 Mobile Platform, Snapdragon 865 5G Mobile Platform, Snapdragon W5+ Gen 1 Wearable Platform, Snapdragon X55 5G Modem-RF System, Snapdragon XR2 5G Platform, Snapdragon 8 Gen 1 Mobile Platform, Snapdragon 888 5G Mobile Platform, Snapdragon 4 Gen 1 Mobile Platform, Snapdragon 460 Mobile Platform, Snapdragon 480 5G Mobile Platform, Snapdragon 662 Mobile Platform, Snapdragon 680 4G Mobile Platform, Snapdragon 690 5G Mobile Platform, Snapdragon 695 5G Mobile Platform, Snapdragon 778G 5G Mobile Platform, Snapdragon 8+ Gen 1 Mobile Platform, Snapdragon X65 5G Modem-RF System, Snapdragon XR2+ Gen 1 Platform, Qualcomm® Video Collaboration VC1 Platform, Qualcomm® Video Collaboration VC3 Platform, Snapdragon 8 Gen 2 Mobile Platform, Snapdragon 8+ Gen 2 Mobile Platform, Snapdragon Auto 5G Modem-RF, SA4155P, SA8770P, Snapdragon X12 LTE Modem, QCA2066, QCA6564AU, QCA6574, QCA6574A, QCA6574AU, QCA6584AU, QCA6678AQ, C-V2X 9150, Qualcomm® Video Collaboration VC5 Platform, SD626, Snapdragon 8 Gen 3 Mobile Platform, SA4150P, Snapdragon X5 LTE Modem, SA7775P, SA8620P, SRV1H, SRV1M, SXR2250P, QCA6688AQ, SM8750P, WCN7860, WCN7861, WCN7880, WCN7881, FastConnect 6700, FastConnect 6900, FastConnect 7800, QCS4490, QCM4490, WCD9370, WCD9390, WCD9395, WCN3950, WSA8810, WSA8815, WSA8832, WSA8840, WSA8845, WSA8845H, QAM8255P, QAM8295P, QAMSRV1H, QAMSRV1M, QCA6595, QCA6595AU, QCA6696, QCA6698AQ, QCA6797AQ, QCA8081, QCA8337, QCM5430, QCM6490, QCN6024, QCN9012, QCN9024, QCS8550, SA6155P, SA7255P, SA8155P, SA8195P, SA8255P, SA8295P, SA9000P, SM7675, SM7675P, SM8550P, SM8635, SM8635P, SXR2230P, SXR2330P, WCD9341, WCD9375, WCD9378, WCD9385, WCN3980, WCN3988, WCN6450, WCN6650, WCN6755, Snapdragon AR1 Gen 1 Platform, SM6650P, SM8650Q, QMP1000, SM7435, SM7635P, FastConnect 6200, FastConnect 6800, Flight RB5 5G Platform, QCA6174A, QCA6391, QCA6698AU, QCM2290, QCM4325, QCM6125, QCN9011, QCS2290, QCS4290, QRB5165M, QRB5165N, Robotics RB2 Platform, Robotics RB5 Platform, SA6145P, SA6150P, SA6155, SA8145P, SA8150P, SA8155, SC8380XP, SD865 5G, SDM429W, SDX61, SM7325P, Smart Audio 400 Platform, Snapdragon 4 Gen 2 Mobile Platform, Snapdragon 625 Mobile Platform, Snapdragon 626 Mobile Platform, Snapdragon 7c+ Gen 3 Compute, SW5100, SW5100P, WCD9326, WCD9335, WCN3615, WCN3620, WCN3660B, WCN3680B, WCN3910, WCN3990, Snapdragon 660 Mobile Platform, Snapdragon 820 Automotive Platform, Vision Intelligence 400 Platform, QCA6564A, QCA9377, WCD9360, QCA8695AU, SXR2350P, MDM9250, MDM9628, QCA9367, SM7550, SM7550P, WCD9330, Snapdragon 6 Gen 1 Mobile Platform, Snapdragon 7 Gen 1 Mobile Platform, Snapdragon 7+ Gen 2 Mobile Platform, 5G Fixed Wireless Access Platform, FSM100 Platform, G1 Gen 1, G2 Gen 1, IQ6 Series Platform, IQ8 Series Platform, IQ9 Series Platform, LeMans_AU_LGIT, LeMansAU, Milos, Monaco_IOT, Netrani, Orne, Palawan25, Pandeiro, QLN1083BD, QLN1086BD, QPA1083BD, QPA1086BD, Qualcomm 215 Mobile Platform, QXM1083, QXM1086, QXM1093, QXM1094, QXM1095, QXM1096, SAR1165P, SAR1250P, SAR2130P, SAR2230P, SM6225P, Smart Display 200 Platform, Snapdragon 480+ 5G Mobile Platform, Snapdragon 6 Gen 3 Mobile Platform, Snapdragon 6 Gen 4 Mobile Platform, Snapdragon 685 4G Mobile Platform, Snapdragon 778G+ 5G Mobile Platform, Snapdragon 782G Mobile Platform, Snapdragon 7s Gen 3 Mobile Platform, Snapdragon 8 Elite, Snapdragon 8 Elite Gen 5, Snapdragon 820Am, Snapdragon 865+ 5G Mobile Platform, Snapdragon 870 5G Mobile Platform, Snapdragon 888+ 5G Mobile Platform, Snapdragon AR1+ Gen 1 Platform, Snapdragon X53 5G Modem-RF System, SW6100, SW6100P, Themisto, Vision Intelligence 100 Platform, Vision Intelligence 200 Platform
Версия ПО: - (SD 8 Gen1 5G), - (WCD9380), - (WSA8830), - (WSA8835), - (AR8031), - (AR8035), - (CSRA6620), - (CSRA6640), - (SD662), - (SM8475P), - (WCD9371), - (APQ8098), - (SDA660), - (Snapdragon 429 Mobile Platform), - (Snapdragon 865 5G Mobile Platform), - (Snapdragon W5+ Gen 1 Wearable Platform), - (Snapdragon X55 5G Modem-RF System), - (Snapdragon XR2 5G Platform), - (Snapdragon 8 Gen 1 Mobile Platform), - (Snapdragon 888 5G Mobile Platform), - (Snapdragon 4 Gen 1 Mobile Platform), - (Snapdragon 460 Mobile Platform), - (Snapdragon 480 5G Mobile Platform), - (Snapdragon 662 Mobile Platform), - (Snapdragon 680 4G Mobile Platform), - (Snapdragon 690 5G Mobile Platform), - (Snapdragon 695 5G Mobile Platform), - (Snapdragon 778G 5G Mobile Platform), - (Snapdragon 8+ Gen 1 Mobile Platform), - (Snapdragon X65 5G Modem-RF System), - (Snapdragon XR2+ Gen 1 Platform), - (Qualcomm® Video Collaboration VC1 Platform), - (Qualcomm® Video Collaboration VC3 Platform), - (Snapdragon 8 Gen 2 Mobile Platform), - (Snapdragon 8+ Gen 2 Mobile Platform), - (Snapdragon Auto 5G Modem-RF), - (SA4155P), - (SA8770P), - (Snapdragon X12 LTE Modem), - (QCA2066), - (QCA6564AU), - (QCA6574), - (QCA6574A), - (QCA6574AU), - (QCA6584AU), - (QCA6678AQ), - (C-V2X 9150), - (Qualcomm® Video Collaboration VC5 Platform), - (SD626), - (Snapdragon 8 Gen 3 Mobile Platform), - (SA4150P), - (Snapdragon X5 LTE Modem), - (SA7775P), - (SA8620P), - (SRV1H), - (SRV1M), - (SXR2250P), - (QCA6688AQ), - (SM8750P), - (WCN7860), - (WCN7861), - (WCN7880), - (WCN7881), - (FastConnect 6700), - (FastConnect 6900), - (FastConnect 7800), - (QCS4490), - (QCM4490), - (WCD9370), - (WCD9390), - (WCD9395), - (WCN3950), - (WSA8810), - (WSA8815), - (WSA8832), - (WSA8840), - (WSA8845), - (WSA8845H), - (QAM8255P), - (QAM8295P), - (QAMSRV1H), - (QAMSRV1M), - (QCA6595), - (QCA6595AU), - (QCA6696), - (QCA6698AQ), - (QCA6797AQ), - (QCA8081), - (QCA8337), - (QCM5430), - (QCM6490), - (QCN6024), - (QCN9012), - (QCN9024), - (QCS8550), - (SA6155P), - (SA7255P), - (SA8155P), - (SA8195P), - (SA8255P), - (SA8295P), - (SA9000P), - (SM7675), - (SM7675P), - (SM8550P), - (SM8635), - (SM8635P), - (SXR2230P), - (SXR2330P), - (WCD9341), - (WCD9375), - (WCD9378), - (WCD9385), - (WCN3980), - (WCN3988), - (WCN6450), - (WCN6650), - (WCN6755), - (Snapdragon AR1 Gen 1 Platform), - (SM6650P), - (SM8650Q), - (QMP1000), - (SM7435), - (SM7635P), - (FastConnect 6200), - (FastConnect 6800), - (Flight RB5 5G Platform), - (QCA6174A), - (QCA6391), - (QCA6698AU), - (QCM2290), - (QCM4325), - (QCM6125), - (QCN9011), - (QCS2290), - (QCS4290), - (QRB5165M), - (QRB5165N), - (Robotics RB2 Platform), - (Robotics RB5 Platform), - (SA6145P), - (SA6150P), - (SA6155), - (SA8145P), - (SA8150P), - (SA8155), - (SC8380XP), - (SD865 5G), - (SDM429W), - (SDX61), - (SM7325P), - (Smart Audio 400 Platform), - (Snapdragon 4 Gen 2 Mobile Platform), - (Snapdragon 625 Mobile Platform), - (Snapdragon 626 Mobile Platform), - (Snapdragon 7c+ Gen 3 Compute), - (SW5100), - (SW5100P), - (WCD9326), - (WCD9335), - (WCN3615), - (WCN3620), - (WCN3660B), - (WCN3680B), - (WCN3910), - (WCN3990), - (Snapdragon 660 Mobile Platform), - (Snapdragon 820 Automotive Platform), - (Vision Intelligence 400 Platform), - (QCA6564A), - (QCA9377), - (WCD9360), - (QCA8695AU), - (SXR2350P), - (MDM9250), - (MDM9628), - (QCA9367), - (SM7550), - (SM7550P), - (WCD9330), - (Snapdragon 6 Gen 1 Mobile Platform), - (Snapdragon 7 Gen 1 Mobile Platform), - (Snapdragon 7+ Gen 2 Mobile Platform), - (5G Fixed Wireless Access Platform), - (FSM100 Platform), - (G1 Gen 1), - (G2 Gen 1), - (IQ6 Series Platform), - (IQ8 Series Platform), - (IQ9 Series Platform), - (LeMans_AU_LGIT), - (LeMansAU), - (Milos), - (Monaco_IOT), - (Netrani), - (Orne), - (Palawan25), - (Pandeiro), - (QLN1083BD), - (QLN1086BD), - (QPA1083BD), - (QPA1086BD), - (Qualcomm 215 Mobile Platform), - (QXM1083), - (QXM1086), - (QXM1093), - (QXM1094), - (QXM1095), - (QXM1096), - (SAR1165P), - (SAR1250P), - (SAR2130P), - (SAR2230P), - (SM6225P), - (Smart Display 200 Platform), - (Snapdragon 480+ 5G Mobile Platform), - (Snapdragon 6 Gen 3 Mobile Platform), - (Snapdragon 6 Gen 4 Mobile Platform), - (Snapdragon 685 4G Mobile Platform), - (Snapdragon 778G+ 5G Mobile Platform), - (Snapdragon 782G Mobile Platform), - (Snapdragon 7s Gen 3 Mobile Platform), - (Snapdragon 8 Elite), - (Snapdragon 8 Elite Gen 5), - (Snapdragon 820Am), - (Snapdragon 865+ 5G Mobile Platform), - (Snapdragon 870 5G Mobile Platform), - (Snapdragon 888+ 5G Mobile Platform), - (Snapdragon AR1+ Gen 1 Platform), - (Snapdragon X53 5G Modem-RF System), - (SW6100), - (SW6100P), - (Themisto), - (Vision Intelligence 100 Platform), - (Vision Intelligence 200 Platform)
Тип ПО: Микропрограммный код, Сетевое средство, ПО сетевого программно-аппаратного средства, Сетевое программное средство, Микропрограммный код аппаратных компонентов компьютера
ОС / платформа:
⚙️ Технические сведения
Тип ошибки
Целочисленное переполнение или циклический сдвиг (CWE-190)
Класс уязвимости
Уязвимость кода
Дата выявления
18.12.2025
Способ эксплуатации
Манипулирование структурами данных
Способ устранения
Обновление программного обеспечения
Статус уязвимости
Подтверждена производителем
Наличие эксплойта
Существует
Устранение
Уязвимость устранена
📊 CVSS
CVSS 2.0
AV:L/AC:L/Au:S/C:C/I:C/A:C
CVSS 3.0
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
⚠️ Уровень опасности
Средний уровень опасности (базовая оценка CVSS 2.0 составляет 6,8)
Высокий уровень опасности (базовая оценка CVSS 3.1 составляет 7,8)
🏷️ Идентификаторы
CVE-2026-21385
📅 Даты
Дата публикации
04.03.2026
Последнее обновление
04.03.2026
← Назад к списку