HIGH · 7.5

CVE-2025-21448

Transient DOS may occur while parsing SSID in action frames.

Vulnerability Description

Transient DOS may occur while parsing SSID in action frames.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
QualcommQcn9070 Firmware-
QualcommQcn9070-
QualcommQcn9072 Firmware-
QualcommQcn9072-
QualcommQcn9074 Firmware-
QualcommQcn9074-
QualcommQcn9100 Firmware-
QualcommQcn9100-
QualcommQcn9274 Firmware-
QualcommQcn9274-
QualcommQcs4490 Firmware-
QualcommQcs4490-
QualcommQcs5430 Firmware-
QualcommQcs5430-
QualcommQcs6490 Firmware-
QualcommQcs6490-
QualcommQcs7230 Firmware-
QualcommQcs7230-
QualcommQcs8250 Firmware-
QualcommQcs8250-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-21448?

CVE-2025-21448 is a vulnerability with a CVSS score of 7.5 (HIGH). Transient DOS may occur while parsing SSID in action frames.

How severe is CVE-2025-21448?

CVE-2025-21448 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2025-21448?

Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Qcn9070 Firmware, Qualcomm Qcn9070, Qualcomm Qcn9072 Firmware, Qualcomm Qcn9072, Qualcomm Qcn9074 Firmware.