CVE-2025-47348 | Qualcomm Snapdragon Auto up to XR1 Platform Trusted Application uninitialized variable (WID-SEC-2026-0134)
A vulnerability was found in Qualcomm Snapdragon Auto, Snapdragon CCW, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile and Snapdragon WBC. It has been declared as critical. The impacted element is an unknown function of the component Trusted Application. The manipulation results in use of uninitialized variable.
This vulnerability is identified as CVE-2025-47348. The attack is only possible with local access. There is not any exploit available.
It is recommended to upgrade the affected component.