CVE-2025-21449 | Qualcomm Snapdragon Auto up to XR1 Platform SSID IE buffer over-read (WID-SEC-2025-1944)
A vulnerability labeled as critical has been found in Qualcomm Snapdragon Auto, Snapdragon CCW, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon MC, Snapdragon Mobile, Snapdragon Technology, Snapdragon Voice & Music, Snapdragon WBC, Snapdragon Wearables and Snapdragon Wired Infrastructure and Networking. This issue affects some unknown processing of the component SSID IE Handler. Such manipulation leads to buffer over-read.
This vulnerability is traded as CVE-2025-21449. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.