Windows SCM Call Buffer Overflow Causing Memory Corruption
CVE-2025-27059 Published on October 9, 2025
Use of Out-of-range Pointer Offset in TZ Firmware
Memory corruption while performing SCM call.
Vulnerability Analysis
CVE-2025-27059 can be exploited with local system access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to be very high.
Weakness Type
What is an Untrusted pointer offset Vulnerability?
The program performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.
CVE-2025-27059 has been classified to as an Untrusted pointer offset vulnerability or weakness.
Products Associated with CVE-2025-27059
stack.watch emails you whenever new vulnerabilities are published in Qualcomm Snapdragon or Microsoft Windows. Just hit a watch button to start following.
Affected Versions
Qualcomm, Inc. Snapdragon:- Version Immersive Home 214 Platform is affected.
- Version Immersive Home 216 Platform is affected.
- Version Immersive Home 316 Platform is affected.
- Version Immersive Home 318 Platform is affected.
- Version IPQ5010 is affected.
- Version IPQ5028 is affected.
- Version QCN6023 is affected.
- Version QCN6024 is affected.
- Version QCN6100 is affected.
- Version QCN6102 is affected.
- Version QCN6112 is affected.
- Version QCN6122 is affected.
- Version QCN6132 is affected.
- Version QCN9000 is affected.
- Version QCN9001 is affected.
- Version QCN9002 is affected.
- Version QCN9003 is affected.
- Version QCN9012 is affected.
- Version QCN9022 is affected.
- Version QCN9024 is affected.
- Version QCN9070 is affected.
- Version QCN9072 is affected.
- Version QCN9074 is affected.
- Version QCN9100 is affected.
- Version QCN9274 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.