Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Qualcomm Flags Exploitation of Adreno GPU Flaws, Urges OEMs to Patch Urgently

Qualcomm Flags Exploitation of Adreno GPU Flaws, Urges OEMs to Patch Urgently

Posted on June 2, 2025June 2, 2025 By CWS

Cellular chipmaker Qualcomm on Monday warned that skilled hackers are already exploiting three newly patched Adreno GPU bugs and the corporate is urgent cellphone makers to push out there fixes immediately.

The corporate didn’t present particulars on the assaults however cited “indications from Google Menace Evaluation Group” {that a} trio of flaws (CVE-2025-21479, CVE-2025-21480 and CVE-2025-27038) “could also be underneath restricted, focused exploitation.”

The corporate didn’t share any further particulars on the in-the-wild assaults. Google has not but publicly documented these exploits. The usage of the “restricted, focused exploitation” phrase suggests the exploits could also be linked to industrial spyware and adware merchandise.

In response to Qualcomm’s June 2025 safety bulletin, patches for these vulnerabilities had been shipped to OEMs and cellphone producers  in Might and the chipmaker is strongly urging cellphone producers to push updates “as quickly as potential.”  

“Please contact your machine producer for extra info on the patch standing about particular units,” Qualcomm mentioned.

Two of the three flaws are rated “vital” and are described as improper authorization within the GPU micronode that permits rogue instructions to deprave reminiscence. The vital bugs carry a CVSS safety rating of 8.6/10.

The third exploited vulnerability is a use-after-free within the Adreno driver that may be triggered from Chrome. This flaw is marked with a CVSS severity rating of seven.5/10.

The exploited flaws headline an enormous patch bundle from Qualcomm that covers a number of “high-severity” affected the information community stack, WLAN HAL denial-of-service and a Bluetooth host reminiscence corruption subject.Commercial. Scroll to proceed studying.

Qualcomm additionally shipped patches for safety bugs in DSP providers, audio, computer-vision and digicam drivers.  

Associated: Vulnerabilities Patched in Qualcomm, Mediatek Chipsets

Associated: Qualcomm Alerted to Zero-Day Exploited in Focused Assaults

Associated: Federal Companies Pushed to Patch Exploited Qualcomm Flaws

Associated: Qualcomm Patches 3 Zero-Days Reported by Google

Security Week News Tags:Adreno, Exploitation, Flags, Flaws, GPU, OEMs, Patch, Qualcomm, Urgently, Urges

Post navigation

Previous Post: Threat Actors Using ClickFix Technique to Deliver EddieStealer Malware
Next Post: Prioritizing Vulnerabilities in a Sea of Alerts

Related Posts

Android’s August 2025 Update Patches Exploited Qualcomm Vulnerability Android’s August 2025 Update Patches Exploited Qualcomm Vulnerability Security Week News
Hackers Target Swedish Power Grid Operator Hackers Target Swedish Power Grid Operator Security Week News
Chinese Hacking Group ‘Earth Lamia’ Targets Multiple Industries Chinese Hacking Group ‘Earth Lamia’ Targets Multiple Industries Security Week News
Dataminr to Acquire ThreatConnect for 0 Million Dataminr to Acquire ThreatConnect for $290 Million Security Week News
Cybereason Acquired by MSSP Giant LevelBlue Cybereason Acquired by MSSP Giant LevelBlue Security Week News
Guardz Banks M Series B for All-in-One SMB Security Guardz Banks $56M Series B for All-in-One SMB Security Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Muddled Libra Exploits VMware vSphere in Cyber Attack
  • Feiniu NAS Devices Targeted in Major Botnet Attack
  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Muddled Libra Exploits VMware vSphere in Cyber Attack
  • Feiniu NAS Devices Targeted in Major Botnet Attack
  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News