CVE-2025-21434 | Buffer Over-read in WLAN Host

Transient DOS may occur while parsing EHT operation IE or EHT capability IE.

Published: 2025-04-07 Last update: 2025-10-06 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2025-21434 is rated Moderate Risk (56.9/100): CVSS High severity, with medium exploitation likelihood (EPSS 0.88%). Mandatory action: Review affected assets and schedule remediation.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Exploit prediction scoring system (EPSS) score for CVE-2025-21434

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-05-18 0.45% 0.88% +0.43%
2 2026-02-01 0.05% 0.45% +0.40%
3 2025-04-07 0.05%

Full EPSS history (3 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2025-21434

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
7.5 3.1 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Click to expand
Attack vector (AV:N)
Could be attacked over the internet or any normal routed network—not just someone sitting at the machine.
Attack complexity (AC:L)
Once they can reach the bug, pulling it off is straightforward—no weird race conditions or rare setup.
Privileges required (PR:N)
No account or special rights needed—anonymous or random user is enough.
User interaction (UI:N)
Nobody has to click “OK” or open a trap file; it can work without a victim helping.
Scope (S:U)
Damage stays in the same “trust bubble” as the broken component—no big spill into unrelated systems.
Confidentiality (C:N)
Doesn’t really leak secrets in a meaningful way.
Integrity (I:N)
Data isn’t meaningfully altered or forged.
Availability (A:H)
Could take the service down hard or make it unusable for people who depend on it.
3.9 3.6 [email protected]

Weakness enumeration for CVE-2025-21434

Affected software / configurations for CVE-2025-21434

Vendor Product Version Raw CPE
qualcomm qcs8300_firmware cpe:2.3:o:qualcomm:qcs8300_firmware:-:*:*:*:*:*:*:*
qualcomm qcs8550_firmware cpe:2.3:o:qualcomm:qcs8550_firmware:-:*:*:*:*:*:*:*
qualcomm qcs9100_firmware cpe:2.3:o:qualcomm:qcs9100_firmware:-:*:*:*:*:*:*:*
qualcomm qfw7114_firmware cpe:2.3:o:qualcomm:qfw7114_firmware:-:*:*:*:*:*:*:*
qualcomm qfw7124_firmware cpe:2.3:o:qualcomm:qfw7124_firmware:-:*:*:*:*:*:*:*
qualcomm qmp1000_firmware cpe:2.3:o:qualcomm:qmp1000_firmware:-:*:*:*:*:*:*:*
qualcomm video_collaboration_vc3_platform_firmware cpe:2.3:o:qualcomm:video_collaboration_vc3_platform_firmware:-:*:*:*:*:*:*:*
qualcomm video_collaboration_vc5_platform_firmware cpe:2.3:o:qualcomm:video_collaboration_vc5_platform_firmware:-:*:*:*:*:*:*:*
qualcomm sa6155p_firmware cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:*
qualcomm sa7255p_firmware cpe:2.3:o:qualcomm:sa7255p_firmware:-:*:*:*:*:*:*:*
qualcomm sa7775p_firmware cpe:2.3:o:qualcomm:sa7775p_firmware:-:*:*:*:*:*:*:*
qualcomm sa8155p_firmware cpe:2.3:o:qualcomm:sa8155p_firmware:-:*:*:*:*:*:*:*
qualcomm sa8195p_firmware cpe:2.3:o:qualcomm:sa8195p_firmware:-:*:*:*:*:*:*:*
qualcomm sa8255p_firmware cpe:2.3:o:qualcomm:sa8255p_firmware:-:*:*:*:*:*:*:*
qualcomm sa8295p_firmware cpe:2.3:o:qualcomm:sa8295p_firmware:-:*:*:*:*:*:*:*
qualcomm sa8530p_firmware cpe:2.3:o:qualcomm:sa8530p_firmware:-:*:*:*:*:*:*:*
qualcomm sa8540p_firmware cpe:2.3:o:qualcomm:sa8540p_firmware:-:*:*:*:*:*:*:*
qualcomm sa8620p_firmware cpe:2.3:o:qualcomm:sa8620p_firmware:-:*:*:*:*:*:*:*
qualcomm sa8650p_firmware cpe:2.3:o:qualcomm:sa8650p_firmware:-:*:*:*:*:*:*:*
qualcomm sa8770p_firmware cpe:2.3:o:qualcomm:sa8770p_firmware:-:*:*:*:*:*:*:*
qualcomm sa8775p_firmware cpe:2.3:o:qualcomm:sa8775p_firmware:-:*:*:*:*:*:*:*
qualcomm sa9000p_firmware cpe:2.3:o:qualcomm:sa9000p_firmware:-:*:*:*:*:*:*:*
qualcomm sg8275p_firmware cpe:2.3:o:qualcomm:sg8275p_firmware:-:*:*:*:*:*:*:*
qualcomm sm6650_firmware cpe:2.3:o:qualcomm:sm6650_firmware:-:*:*:*:*:*:*:*
qualcomm sm7635_firmware cpe:2.3:o:qualcomm:sm7635_firmware:-:*:*:*:*:*:*:*
qualcomm sm7675_firmware cpe:2.3:o:qualcomm:sm7675_firmware:-:*:*:*:*:*:*:*
qualcomm sm7675p_firmware cpe:2.3:o:qualcomm:sm7675p_firmware:-:*:*:*:*:*:*:*
qualcomm sm8550p_firmware cpe:2.3:o:qualcomm:sm8550p_firmware:-:*:*:*:*:*:*:*
qualcomm sm8635_firmware cpe:2.3:o:qualcomm:sm8635_firmware:-:*:*:*:*:*:*:*
qualcomm sm8635p_firmware cpe:2.3:o:qualcomm:sm8635p_firmware:-:*:*:*:*:*:*:*
qualcomm sm8650q_firmware cpe:2.3:o:qualcomm:sm8650q_firmware:-:*:*:*:*:*:*:*
qualcomm sm8735_firmware cpe:2.3:o:qualcomm:sm8735_firmware:-:*:*:*:*:*:*:*
qualcomm sm8750_firmware cpe:2.3:o:qualcomm:sm8750_firmware:-:*:*:*:*:*:*:*
qualcomm sm8750p_firmware cpe:2.3:o:qualcomm:sm8750p_firmware:-:*:*:*:*:*:*:*
qualcomm snapdragon_8_gen_2_mobile_platform_firmware cpe:2.3:o:qualcomm:snapdragon_8_gen_2_mobile_platform_firmware:-:*:*:*:*:*:*:*
qualcomm snapdragon_8_gen_3_mobile_platform_firmware cpe:2.3:o:qualcomm:snapdragon_8_gen_3_mobile_platform_firmware:-:*:*:*:*:*:*:*
qualcomm snapdragon_8\+_gen_2_mobile_platform_firmware cpe:2.3:o:qualcomm:snapdragon_8\+_gen_2_mobile_platform_firmware:-:*:*:*:*:*:*:*
qualcomm snapdragon_ar1_gen_1_platform_firmware cpe:2.3:o:qualcomm:snapdragon_ar1_gen_1_platform_firmware:-:*:*:*:*:*:*:*
qualcomm snapdragon_ar1_gen_1_platform_\"luna1\"_firmware cpe:2.3:o:qualcomm:snapdragon_ar1_gen_1_platform_\"luna1\"_firmware:-:*:*:*:*:*:*:*
qualcomm snapdragon_ar2_gen_1_platform_firmware cpe:2.3:o:qualcomm:snapdragon_ar2_gen_1_platform_firmware:-:*:*:*:*:*:*:*
qualcomm ar8035_firmware cpe:2.3:o:qualcomm:ar8035_firmware:-:*:*:*:*:*:*:*
qualcomm fastconnect_6700_firmware cpe:2.3:o:qualcomm:fastconnect_6700_firmware:-:*:*:*:*:*:*:*
qualcomm fastconnect_6900_firmware cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
qualcomm fastconnect_7800_firmware cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
qualcomm qam8255p_firmware cpe:2.3:o:qualcomm:qam8255p_firmware:-:*:*:*:*:*:*:*
qualcomm qam8295p_firmware cpe:2.3:o:qualcomm:qam8295p_firmware:-:*:*:*:*:*:*:*
qualcomm qam8620p_firmware cpe:2.3:o:qualcomm:qam8620p_firmware:-:*:*:*:*:*:*:*
qualcomm qam8650p_firmware cpe:2.3:o:qualcomm:qam8650p_firmware:-:*:*:*:*:*:*:*
qualcomm qam8775p_firmware cpe:2.3:o:qualcomm:qam8775p_firmware:-:*:*:*:*:*:*:*
qualcomm qamsrv1h_firmware cpe:2.3:o:qualcomm:qamsrv1h_firmware:-:*:*:*:*:*:*:*
qualcomm qamsrv1m_firmware cpe:2.3:o:qualcomm:qamsrv1m_firmware:-:*:*:*:*:*:*:*
qualcomm qca6391_firmware cpe:2.3:o:qualcomm:qca6391_firmware:-:*:*:*:*:*:*:*
qualcomm qca6554a_firmware cpe:2.3:o:qualcomm:qca6554a_firmware:-:*:*:*:*:*:*:*
qualcomm qca6564au_firmware cpe:2.3:o:qualcomm:qca6564au_firmware:-:*:*:*:*:*:*:*
qualcomm qca6574_firmware cpe:2.3:o:qualcomm:qca6574_firmware:-:*:*:*:*:*:*:*
qualcomm qca6574a_firmware cpe:2.3:o:qualcomm:qca6574a_firmware:-:*:*:*:*:*:*:*
qualcomm qca6574au_firmware cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:*
qualcomm qca6584au_firmware cpe:2.3:o:qualcomm:qca6584au_firmware:-:*:*:*:*:*:*:*
qualcomm qca6595_firmware cpe:2.3:o:qualcomm:qca6595_firmware:-:*:*:*:*:*:*:*
qualcomm qca6595au_firmware cpe:2.3:o:qualcomm:qca6595au_firmware:-:*:*:*:*:*:*:*
qualcomm qca6678aq_firmware cpe:2.3:o:qualcomm:qca6678aq_firmware:-:*:*:*:*:*:*:*
qualcomm qca6688aq_firmware cpe:2.3:o:qualcomm:qca6688aq_firmware:-:*:*:*:*:*:*:*
qualcomm qca6696_firmware cpe:2.3:o:qualcomm:qca6696_firmware:-:*:*:*:*:*:*:*
qualcomm qca6698aq_firmware cpe:2.3:o:qualcomm:qca6698aq_firmware:-:*:*:*:*:*:*:*
qualcomm qca6777aq_firmware cpe:2.3:o:qualcomm:qca6777aq_firmware:-:*:*:*:*:*:*:*
qualcomm qca6787aq_firmware cpe:2.3:o:qualcomm:qca6787aq_firmware:-:*:*:*:*:*:*:*
qualcomm qca6797aq_firmware cpe:2.3:o:qualcomm:qca6797aq_firmware:-:*:*:*:*:*:*:*
qualcomm qca8081_firmware cpe:2.3:o:qualcomm:qca8081_firmware:-:*:*:*:*:*:*:*
qualcomm qca8337_firmware cpe:2.3:o:qualcomm:qca8337_firmware:-:*:*:*:*:*:*:*
qualcomm qcc2073_firmware cpe:2.3:o:qualcomm:qcc2073_firmware:-:*:*:*:*:*:*:*
qualcomm qcc2076_firmware cpe:2.3:o:qualcomm:qcc2076_firmware:-:*:*:*:*:*:*:*
qualcomm qcc710_firmware cpe:2.3:o:qualcomm:qcc710_firmware:-:*:*:*:*:*:*:*
qualcomm qcm5430_firmware cpe:2.3:o:qualcomm:qcm5430_firmware:-:*:*:*:*:*:*:*
qualcomm qcm6490_firmware cpe:2.3:o:qualcomm:qcm6490_firmware:-:*:*:*:*:*:*:*
qualcomm qcm8550_firmware cpe:2.3:o:qualcomm:qcm8550_firmware:-:*:*:*:*:*:*:*
qualcomm qcn6224_firmware cpe:2.3:o:qualcomm:qcn6224_firmware:-:*:*:*:*:*:*:*
qualcomm qcn6274_firmware cpe:2.3:o:qualcomm:qcn6274_firmware:-:*:*:*:*:*:*:*
qualcomm qcn9011_firmware cpe:2.3:o:qualcomm:qcn9011_firmware:-:*:*:*:*:*:*:*
qualcomm qcn9012_firmware cpe:2.3:o:qualcomm:qcn9012_firmware:-:*:*:*:*:*:*:*
qualcomm qcn9274_firmware cpe:2.3:o:qualcomm:qcn9274_firmware:-:*:*:*:*:*:*:*

References for CVE-2025-21434

cvelogic Threat Intelligence