LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

CVE-2026-21385: Qualcomm Multiple Chipsets Memory Corruption Vulnerability

RBRecent Breaches Vulnerability Intelligence·Mar 3, 2026
High⚠ Actively exploited (CISA KEV)
High
Severity
Active
CISA KEV
No
Ransomware use
Mar 24, 2026
Patch deadline
⚠ Exploited in the wild. CISA added CVE-2026-21385 to its Known Exploited Vulnerabilities catalog on Mar 3, 2026, with a federal patch deadline of Mar 24, 2026 — meaning attackers are actively using it. If you run the affected software, patch it immediately.

Multiple Qualcomm chipsets contain a memory corruption vulnerability while using alignments for memory allocation.

Qualcomm Multiple Chipsets contain a memory corruption vulnerability that occurs during memory allocation when alignments are applied. The issue is tracked as CVE-2026-21385 and is rooted in CWE-190. Because the affected components are widely used in mobile, embedded, and network devices, the flaw can expose systems that rely on those chipsets to memory-safety failures.

Organizations should treat any Qualcomm chipset deployment as potentially in scope until they confirm status against the vendor advisory.

How it works

The weakness is an integer overflow or wraparound (CWE-190) that surfaces while calculating aligned memory allocations. An attacker who can influence the size or alignment parameters supplied to the allocator may cause the arithmetic result to wrap, producing an incorrect allocation size. Subsequent operations on the undersized or misaligned buffer can then corrupt adjacent memory.

Am I affected? How to find it in your systems

Qualcomm chipsets appear in smartphones, tablets, IoT devices, automotive systems, and some networking equipment. Inventory begins with hardware asset lists that record chipset or SoC model numbers, followed by firmware or driver versions on those devices.

How to remediate

Apply the vendor-supplied update or mitigation instructions referenced in the official advisory. When the chipset is used inside a cloud-hosted service, also follow any applicable BOD 22-01 requirements.

If you can't patch immediately

Until a fix can be deployed, reduce the attack surface by isolating devices that contain the vulnerable chipsets on segmented networks. Where technically feasible, apply virtual patching or filtering rules that block malformed allocation requests before they reach the chipset driver.

If your data may have been exposed

Memory-corruption issues in widely deployed hardware can contribute to later breaches. Organizations that suspect exposure should review available telemetry and can run a free exposure scan of their email addresses against known breach datasets to identify any associated account compromise.

AICompiled with AI assistance from public sources and published under our editorial standards.

Details

AffectedQualcomm · Multiple Chipsets
WeaknessCWE-190
Added to CISA KEVMar 3, 2026
Federal patch deadlineMar 24, 2026
Known ransomware useNot documented
Check if your data is exposed →

Official records: NVD · CISA KEV

← All actively-exploited vulnerabilities