Executive brief
A weakness in mobile device firmware allows attackers to bypass security capability checks by replaying security parameters without proper verification. This could enable unauthorized access to secured communications or operations on affected mobile devices, potentially compromising user data and device security.
Technical details
The vulnerability exists in User Equipment (UE) firmware that fails to properly verify the consistency of additional security capabilities against replayed capability advertisements. An attacker on the network can exploit this by crafting malicious capability responses that the UE accepts without proper validation. The attack requires network-level access to intercept and modify capability negotiation traffic. Successful exploitation allows an attacker to downgrade or bypass security protections on the device. Qualcomm has released updates addressing this issue as documented in their August 2026 security bulletin.
Affected products
- Qualcomm UE Firmware
Timeline
- 2026-08-04: disclosed
- 2026-08-04: advisory: Qualcomm security bulletin published