Vulnerabilità · 210 giorni fa

Qualcomm Display Zero-Day Actively Exploited (CVE-2026-21385)

Google disclosed a memory‑corruption zero‑day (CVE‑2026‑21385) in an open‑source Qualcomm display component affecting 234 chipsets; Google marked it as actively exploited. Qualcomm issued fixes to OEMs in January — apply device OEM February 2026 Android security updates immediately.

CVE-2026-21385

NVD KEV

Sfruttamento noto · CISA KEV

CVSS 7.8 HIGH: memory corruption while using alignments for memory allocation.

Data di correzione federale CISA 24 mar

Cronologia

Fonti

6 fonti che coprono questa storia

Entità

Part of the PlainSec briefing for 2026-03-07

Editions

Storie correlate