PT-2025-44986 · Qualcomm · Snapdragon Gnss

Published

2025-11-04

·

Updated

2025-11-15

·

CVE-2025-20747

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon GNSS (affected versions not specified)
Description An out-of-bounds write issue exists in the gnss service due to an incorrect bounds check. Successful exploitation could allow a local attacker with System privileges to escalate their privileges. User interaction is not required for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-20747

Affected Products

Snapdragon Gnss