HIGH · 7.4

CVE-2026-25288

Transient DOS when processing a short target wake time channel usage response frame with insufficient packet size.

Vulnerability Description

Transient DOS when processing a short target wake time channel usage response frame with insufficient packet size.

CVSS Score

7.4

HIGH

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
QualcommOrne Firmware-
QualcommOrne-
QualcommPalawan25 Firmware-
QualcommPalawan25-
QualcommPandeiro Firmware-
QualcommPandeiro-
QualcommQln1083Bd Firmware-
QualcommQln1083Bd-
QualcommQln1086Bd Firmware-
QualcommQln1086Bd-
QualcommQmb715 Firmware-
QualcommQmb715-
QualcommQmp1000 Firmware-
QualcommQmp1000-
QualcommQmp2001 Firmware-
QualcommQmp2001-
QualcommQpa1083Bd Firmware-
QualcommQpa1083Bd-
QualcommQpa1086Bd Firmware-
QualcommQpa1086Bd-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2026-25288?

CVE-2026-25288 is a vulnerability with a CVSS score of 7.4 (HIGH). Transient DOS when processing a short target wake time channel usage response frame with insufficient packet size.

How severe is CVE-2026-25288?

CVE-2026-25288 has been rated HIGH with a CVSS base score of 7.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2026-25288?

Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Orne Firmware, Qualcomm Orne, Qualcomm Palawan25 Firmware, Qualcomm Palawan25, Qualcomm Pandeiro Firmware.