CVE-2026-25289
CRITICALCVSS 9.6/10EPSS 0.18%
Last modified
CVE-2026-25289 is a critical-severity vulnerability rated 9.6/10 on the CVSS scale. Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.. EPSS estimates a 0.18% chance of exploitation in the next 30 days.
Description
Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Sm7550p Firmware | All versions |
| Qualcomm | Sm7635p Firmware | All versions |
| Qualcomm | Sm7675 Firmware | All versions |
| Qualcomm | Sm7675p Firmware | All versions |
| Qualcomm | Sm8425 Firmware | All versions |
| Qualcomm | Sm8550p Firmware | All versions |
| Qualcomm | Sm8635 Firmware | All versions |
| Qualcomm | Sm8635p Firmware | All versions |
| Qualcomm | Sm8650q Firmware | All versions |
| Qualcomm | Sm8735p Firmware | All versions |
| Qualcomm | Sm8750p Firmware | All versions |
| Qualcomm | Sm8845p Firmware | All versions |
| Qualcomm | Snapdragon 6 Gen 1 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 6 Gen 3 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 6 Gen 4 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 7 Gen 4 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 7s Gen 3 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 8 Elite Firmware | All versions |
| Qualcomm | Snapdragon 8 Elite Gen 5 Firmware | All versions |
| Qualcomm | Snapdragon 8 Gen 2 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 8 Gen 3 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 8\+ Gen 2 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon Ar1 Gen 1 Platform Firmware | All versions |
| Qualcomm | Snapdragon Ar1\+ Gen 1 Platform Firmware | All versions |
| Qualcomm | Snapdragon Auto 5g Modem-Rf Gen 2 Firmware | All versions |
| Qualcomm | Snapdragon X65 5g Modem-Rf System Firmware | All versions |
| Qualcomm | Snapdragon X72 5g Modem-Rf System Firmware | All versions |
| Qualcomm | Snapdragon X75 5g Modem-Rf System Firmware | All versions |
| Qualcomm | Snapdragon Wear Elite Firmware | All versions |
| Qualcomm | Srv1h Firmware | All versions |
| Qualcomm | Srv1m Firmware | All versions |
| Qualcomm | Sxr2230p Firmware | All versions |
| Qualcomm | Sxr2250p Firmware | All versions |
| Qualcomm | Sxr2330p Firmware | All versions |
| Qualcomm | Sxr2350p Firmware | All versions |
| Qualcomm | Themisto Firmware | All versions |
| Qualcomm | Wcd9340 Firmware | All versions |
| Qualcomm | Wcd9370 Firmware | All versions |
| Qualcomm | Wcd9371 Firmware | All versions |
| Qualcomm | Wcd9375 Firmware | All versions |
| Qualcomm | Xrv9209 Firmware | All versions |
| Qualcomm | Ar8035 Firmware | All versions |
| Qualcomm | Cologne Firmware | All versions |
| Qualcomm | Cq7790 Firmware | All versions |
| Qualcomm | Cq8725s Firmware | All versions |
| Qualcomm | Cq8750m Firmware | All versions |
| Qualcomm | Fastconnect 6200 Firmware | All versions |
| Qualcomm | Fastconnect 6700 Firmware | All versions |
| Qualcomm | Fastconnect 6900 Firmware | All versions |
| Qualcomm | Fastconnect 7800 Firmware | All versions |
Showing 50 of 201 affected configurations. See NVD for the full list.
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-25289?
Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.
How severe is CVE-2026-25289?
CVE-2026-25289 has a CVSS score of 9.6/10 (CRITICAL severity). The EPSS model estimates a 0.18% probability of exploitation in the next 30 days.
How do I fix CVE-2026-25289?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-25280Memory corruption when processing escape handling flow with …7.8
- CVE-2026-25281Transient DOS when processing large or numerous request buff…7.4
- CVE-2026-25282Transient DOS when processing unverified data from a neighbo…7.9
- CVE-2026-25283Memory Corruption when copying unverified data from an exter…8.8
- CVE-2026-25284Information Disclosure when a pointer is reused after being …7.3
- CVE-2026-25288Transient DOS when processing a short target wake time chann…7.4
- CVE-2026-2529A security flaw has been discovered in Wavlink WL-WN579A3 up…9.8
- CVE-2026-25290Memory Corruption when validating large data buffers from ex…7.8
- CVE-2026-25292Memory Corruption when processing untrusted user input in th…7.6
- CVE-2026-25293Buffer overflow due to incorrect authorization in PLC FW9.8
- CVE-2026-25294Transient DOS while parsing frame during channel usage.7.4
- CVE-2026-2530A weakness has been identified in Wavlink WL-WN579A3 up to 2…8.8
Are you affected by CVE-2026-25289?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
