Executive brief
A security flaw in Qualcomm chipsets allows an attacker with high-level system privileges to bypass cryptographic protections during the boot process. By exploiting this issue, an attacker can replace the device's official startup software with a custom, unauthorized version. This could lead to a total compromise of the device's security, allowing persistent control that survives factory resets and the ability to bypass all operating system security measures.
Technical details
A cryptographic vulnerability exists in the way Qualcomm firmware processes a specific storage partition, categorized as a missing authentication for a critical function (CWE-306). An attacker with local access and high privileges (such as root or administrative access) can exploit this flaw to gain unauthorized write access to protected partitions. This allows the attacker to bypass Secure Boot mechanisms and load a customized, unsigned, or malicious bootloader. The vulnerability has a high impact on confidentiality, integrity, and availability, and it involves a scope jump (S:C) because compromising the bootloader undermines the security of the entire operating system and hardware environment. Fixes are typically distributed via OEM security updates.
Affected products
- Qualcomm Snapdragon Mobile
Timeline
- 2026-06-01: disclosed
- 2026-06-01: advisory: Published in Qualcomm June 2026 Security Bulletin