Qualcomm Fixes Zero-Day Security Vulnerabilities Used By Hackers, Cybercriminals

Smartphone users will have to wait for device manufacturers to roll out security patches for these three zero-day flaws.

Advertisement
Written by David Delima | Updated: 4 June 2025 14:29 IST
Highlights
  • Qualcomm has patched multiple security flaws
  • Three of these were zero-day vulnerabilities
  • Qualcomm says it shared patches for these flaws with OEMs in May

Qualcomm has not disclosed which products are impacted by the security flaws

Photo Credit: Pixabay/ @andrekheren

Qualcomm has patched multiple security flaws discovered in its products, including three zero-day vulnerabilities. The US chipmaker recently announced that these flaws might have been exploited by hackers to target affected devices. Users will have to wait for device manufacturers to roll out Qualcomm's patches for the vulnerabilities that impact the Adreno graphics processing unit (GPU) driver on affected devices. Google Pixel devices that are equipped with the company's own Tensor chips, are reportedly unaffected by the security flaws.

Qualcomm Says Hackers May Have Exploited Zero-Day Flaws

A security bulletin published on Monday reveals that Qualcomm has patched 10 proprietary software issues. The company has assigned two of these flaws a 'Critical' security rating, while the others are marked as 'High'. These issues are linked to graphics, core, the data network stack and connectivity, Wi-Fi hardware abstraction layer (HAL), and the Bluetooth host.

Out of the 10 security vulnerabilities patched by Qualcomm, the chipmaker has revealed that three zero-days (previously unknown flaws) may have been exploited by hackers in a targeted campaign. These are CVE-2025-21479 (Incorrect authorisation in graphics), CVE-2025-21480 (Incorrect authorisation in graphics windows), CVE-2025-27038 (Use after free in graphics).

Advertisement

The descriptions of these security flaws suggest that hackers could leverage them to gain unauthorised access to a target's smartphone. These flaws are regularly discovered and patched by chipmakers, who have access to the proprietary code for their chipsets.

Advertisement

Qualcomm has credited Google's Threat Analysis Group (TAG) with discovering and reporting these flaws, which were subsequently patched. A Google spokesperson told TechCrunch that these security flaws do not affect the company's Pixel phones, which run on in-house Tensor chips.

While the security flaws have been patched by Qualcomm, they still need to be rolled out to user's devices via software updates. The chipmaker says it shared these patches with OEMs in May and urged them to issue security updates for devices "as soon as possible". As a result, users will have to wait until a software update is ready for their devices, and this process could take weeks.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo X300 and Teleconverter Kit India Prices Tipped Ahead of Launch
  2. Xiaomi 17 and Xiaomi 17 Pro First Impressions
  1. Vivo X300 and Teleconverter Kit India Prices Tipped Ahead of December 2 Launch
  2. Goodbye June OTT Release Date Revealed: When, Where to Watch Kate Winslet, Helen Mirren-Starrer Online
  3. Raktabeej 2 Arrives on OTT Platforms This November: All You Need to Know About this Action-Thriller
  4. Usurae Now Streaming on OTT: Plot, Cast, and Everything Else About This Tamil-Language Romantic Drama
  5. Supernova’s First Moments Show Olive-Shaped Blast in Groundbreaking Observations
  6. Intense Solar Storm With Huge CMEs Forced Astronauts to Take Shelter on the ISS
  7. Nearby Super-Earth GJ 251 c Could Help Learn About Worlds That Once Supported Life, Astronomers Say
  8. James Webb Telescope May Have Spotted First Generation of Stars in the Universe
  9. Coming-of-Age Web Series CO-ED to Stream on OTT Soon: Know When, Where to Watch Online
  10. Leonardo DiCaprio’s One Battle After Another Now Available for Rent on Prime Video: All You Need to Know
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.