Qualcomm Fixes Zero-Day Security Vulnerabilities Used By Hackers, Cybercriminals

Smartphone users will have to wait for device manufacturers to roll out security patches for these three zero-day flaws.

Advertisement
Written by David Delima | Updated: 4 June 2025 14:29 IST
Highlights
  • Qualcomm has patched multiple security flaws
  • Three of these were zero-day vulnerabilities
  • Qualcomm says it shared patches for these flaws with OEMs in May

Qualcomm has not disclosed which products are impacted by the security flaws

Photo Credit: Pixabay/ @andrekheren

Qualcomm has patched multiple security flaws discovered in its products, including three zero-day vulnerabilities. The US chipmaker recently announced that these flaws might have been exploited by hackers to target affected devices. Users will have to wait for device manufacturers to roll out Qualcomm's patches for the vulnerabilities that impact the Adreno graphics processing unit (GPU) driver on affected devices. Google Pixel devices that are equipped with the company's own Tensor chips, are reportedly unaffected by the security flaws.

Qualcomm Says Hackers May Have Exploited Zero-Day Flaws

A security bulletin published on Monday reveals that Qualcomm has patched 10 proprietary software issues. The company has assigned two of these flaws a 'Critical' security rating, while the others are marked as 'High'. These issues are linked to graphics, core, the data network stack and connectivity, Wi-Fi hardware abstraction layer (HAL), and the Bluetooth host.

Out of the 10 security vulnerabilities patched by Qualcomm, the chipmaker has revealed that three zero-days (previously unknown flaws) may have been exploited by hackers in a targeted campaign. These are CVE-2025-21479 (Incorrect authorisation in graphics), CVE-2025-21480 (Incorrect authorisation in graphics windows), CVE-2025-27038 (Use after free in graphics).

Advertisement

The descriptions of these security flaws suggest that hackers could leverage them to gain unauthorised access to a target's smartphone. These flaws are regularly discovered and patched by chipmakers, who have access to the proprietary code for their chipsets.

Qualcomm has credited Google's Threat Analysis Group (TAG) with discovering and reporting these flaws, which were subsequently patched. A Google spokesperson told TechCrunch that these security flaws do not affect the company's Pixel phones, which run on in-house Tensor chips.

While the security flaws have been patched by Qualcomm, they still need to be rolled out to user's devices via software updates. The chipmaker says it shared these patches with OEMs in May and urged them to issue security updates for devices "as soon as possible". As a result, users will have to wait until a software update is ready for their devices, and this process could take weeks.

 

Catch the latest from the Consumer Electronics Show on Gadgets 360, at our CES 2026 hub.

Advertisement

Related Stories

Popular Mobile Brands
  1. Dhurandhar OTT Release Date Update: When and Where to Watch it Online?
  2. Realme Neo 8 Launched With 8,000mAh Battery: See Price, Features
  3. YouTube Takes on OpenAI's Sora With AI-Generated Shorts Feature
  4. OnePlus 15T Spotted on Certification Site, Charging Details Revealed
  5. Here's When the Redmi Note 15 Pro and Note 15 Pro+ Will Launch in India
  6. Ubisoft Cancels Prince of Persia: Sands of Time Remake, Delays 7 Games
  7. Apple Asks Delhi High Court to Stop CCI From Seeking Its Financials
  8. NexDeck's New Smartphone Lets You Boot Android 16, Linux and Windows 11
  9. Google Pixel 10a Spotted With Familiar Design in Leaked Renders
  10. Top Last Minute Deals on Smartphones, Smart TVs and Home Appliances
  1. Realme Neo 8 Launched With Snapdragon 8 Gen 5 Chip, 8,000mAh Battery: Price, Features
  2. Apple Asks Delhi High Court to Stop Competition Commission of India From Seeking Its Financials
  3. Amazon Great Republic Day Sale: Top Last Minute Deals on Smartphones, Smart TVs and Home Appliances
  4. Amazon Great Republic Day Sale: Best Deals on Robot Vacuum Cleaners
  5. OnePlus 15T Lands on 3C Certification Database Ahead of Launch in China: Expected Specifications
  6. Crimson Desert Has Officially Gone Gold, Launch Set for March 19
  7. Acer Chromebook Spin 311, Chromebook 311 Launched With MediaTek Kompanio 540 CPU: Price, Features
  8. Samsung Galaxy S26+ Bags 3C Certification; Might Not Launch With Charging Upgrade
  9. Apple Could Turn Siri Into an AI Chatbot to Rival OpenAI, Google: Report
  10. Powerful X-Class Solar Flare Sends CME Toward Earth, Storms Possible
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.