Qualcomm Fixes Zero-Day Security Vulnerabilities Used By Hackers, Cybercriminals

Smartphone users will have to wait for device manufacturers to roll out security patches for these three zero-day flaws.

Advertisement
Written by David Delima | Updated: 4 June 2025 14:29 IST
Highlights
  • Qualcomm has patched multiple security flaws
  • Three of these were zero-day vulnerabilities
  • Qualcomm says it shared patches for these flaws with OEMs in May

Qualcomm has not disclosed which products are impacted by the security flaws

Photo Credit: Pixabay/ @andrekheren

Qualcomm has patched multiple security flaws discovered in its products, including three zero-day vulnerabilities. The US chipmaker recently announced that these flaws might have been exploited by hackers to target affected devices. Users will have to wait for device manufacturers to roll out Qualcomm's patches for the vulnerabilities that impact the Adreno graphics processing unit (GPU) driver on affected devices. Google Pixel devices that are equipped with the company's own Tensor chips, are reportedly unaffected by the security flaws.

Qualcomm Says Hackers May Have Exploited Zero-Day Flaws

A security bulletin published on Monday reveals that Qualcomm has patched 10 proprietary software issues. The company has assigned two of these flaws a 'Critical' security rating, while the others are marked as 'High'. These issues are linked to graphics, core, the data network stack and connectivity, Wi-Fi hardware abstraction layer (HAL), and the Bluetooth host.

Out of the 10 security vulnerabilities patched by Qualcomm, the chipmaker has revealed that three zero-days (previously unknown flaws) may have been exploited by hackers in a targeted campaign. These are CVE-2025-21479 (Incorrect authorisation in graphics), CVE-2025-21480 (Incorrect authorisation in graphics windows), CVE-2025-27038 (Use after free in graphics).

Advertisement

The descriptions of these security flaws suggest that hackers could leverage them to gain unauthorised access to a target's smartphone. These flaws are regularly discovered and patched by chipmakers, who have access to the proprietary code for their chipsets.

Advertisement

Qualcomm has credited Google's Threat Analysis Group (TAG) with discovering and reporting these flaws, which were subsequently patched. A Google spokesperson told TechCrunch that these security flaws do not affect the company's Pixel phones, which run on in-house Tensor chips.

While the security flaws have been patched by Qualcomm, they still need to be rolled out to user's devices via software updates. The chipmaker says it shared these patches with OEMs in May and urged them to issue security updates for devices "as soon as possible". As a result, users will have to wait until a software update is ready for their devices, and this process could take weeks.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. SanDisk Extreme Fit USB Type-C Flash Drive Launched in India at This Price
  2. Samsung Galaxy M17e 5G India Launch Set for March 17: Features
  1. NASA’s Webb Telescope Confirms Asteroid 2024 YR4 Will Safely Pass the Moon in 2032
  2. ChatGPT Adult Mode Delayed Again as OpenAI's 'Code Red' Reportedly Ends
  3. Lava Bold 2 5G India Launch Date Announced; Confirmed to Feature Under-Display Fingerprint Scanner
  4. Realme Note 80 Launched With 6,300mAh Battery, 6.74-Inch Display: Price, Specifications
  5. Anthropic’s Claude Finds 22 Vulnerabilities in Mozilla Firefox in Just Two Weeks
  6. Samsung Galaxy Smartphones Get Inactivity Restart Security Feature With Latest Update: Report
  7. Poco C85x 5G Key Specifications, Features Revealed a Day Ahead of Launch in India
  8. Rooster Now Available for Streaming Online: What You Need to Know About its Plot, Cast, and More
  9. Bhartha Mahasayulaku Wignyapthi OTT Release Date Reportedly Revealed: When and Where to Watch Ravi Teja’s Romantic Drama Online?
  10. Ghost Elephants Out on OTT: Know Where to Watch This Biographical Film Online
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.