Review reviewHigh

CVE-2026-21379

Qualcomm, Inc. Snapdragon, aqt1000 firmware, aqt1000

Memory Corruption when allocating memory with sizes that exceed the maximum allowed value.

CVSS
7.8
EPSS
0.07%
0.05% percentile
CISA KEV
Not listed
Published
2026.07.07
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability0.07%
Technical severityCVSS 7.8

Vulnerability overview

Memory Corruption when allocating memory with sizes that exceed the maximum allowed value.

Affected product and versions

Product
Qualcomm, Inc. Snapdragon, aqt1000 firmware, aqt1000
Affected versions
AQT1000, Cologne, FastConnect 6200, FastConnect 6700, FastConnect 6800, FastConnect 6900, FastConnect 7800, IQX5121, IQX7181, QCA0000, QCA6391, QCA6420, QCA6430, QCM5430, QCM6490, Qualcomm Video Collaboration VC3 Platform, SC8380XP, Snapdragon 7c+ Gen 3 Compute, Snapdragon 8c Compute Platform "Poipu Lite", Snapdragon 8c Compute Platform (SC8180XP-AD) "Poipu Lite"
Fixed versions
No verified fixed-version field is available yet

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Qualcomm, Inc. Snapdragon, aqt1000 firmware, aqt1000 and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE
CWE-126