Feed/CVE-2025-21479
CVE-2025-21479CISA KEV: Actively Exploited

Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability

Published Jun 3, 2025·Updated Jun 3, 2025

NVD Description

Multiple Qualcomm chipsets contain an incorrect authorization vulnerability. This vulnerability allows for memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.

Public Exploits & PoCs8 found

PoC: cve-2025-21479_iqooneo8

Local root exploit for CVE-2025-21479 (Adreno KGSL) on iQOO Neo8 (SM8475) - physical memory r/w, disables SELinux, spawns root shell

3

PoC: vivo_iqoo_neo_9_root_research_on_CVE-2025-21479

iQOO Neo9 (PD2338C) 免解锁 Caps-Root 工具** — 基于 CVE-2025-21479 (Adreno GPU SDS) 的任意物理写提权方案

1

PoC: vivo_iqoo_neo_9_root_research_on_CVE-2025-21479

iQOO Neo9 (PD2338C) 免解锁 Caps-Root 工具** — 基于 CVE-2025-21479 (Adreno GPU SDS) 的任意物理写提权方案

PoC: cve-2025-21479-iqoo11pro

CVE-2025-21479 (Qualcomm Adreno GPU) reproduction notes for vivo iQOO 11 Pro (PD2254) - authorized research

PoC: SELinux-Permissive-Only-version-of-Cheese-aka-CVE-2025-21479

This is an SELinux permissive version of the Cheese exploit also known as CVE-2025-21479 which affected the adreno kgsl on many devices including Samsung snapdragon devices

PoC: omae-wa-cheese-da

CVE-2025-21479 PoC for ZFlip5 with Knox in the way!(˶˃ ᵕ ˂˶)

PoC: cheese-cake

A proof-of-concept for CVE-2025-21479, chained with a Dirty Pagetable technique.

PoC: cheese

CVE-2025-21479 proof-of-concept, I think

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free