Junglewise Threat Intelligence

CVE-2026-25261: Qualcomm rear sensor driver memory corruption in IOCTL handling

CVE-2026-25261 · Severity: medium · CVSS 6.7 · Published 2026-09-17

Executive brief

A Qualcomm rear sensor driver component contains a memory corruption vulnerability in IOCTL (input/output control) call processing. An attacker with local access to the device could potentially exploit this flaw to cause a system crash or execute arbitrary code with elevated privileges, compromising device availability and security.

Technical details

This vulnerability is a memory corruption issue triggered during the processing of IOCTL calls to the rear sensor driver. The exact root cause is not detailed in the available references, but the vulnerability requires local access to the affected device to trigger. An attacker could craft malicious IOCTL requests to corrupt memory and potentially achieve denial of service or privilege escalation. No information on patch availability is confirmed in the provided advisory excerpts.

Affected products

  • Qualcomm rear sensor driver

Timeline

  • 2026-09-17: disclosed

References

Related threats