CVE-2025-27038: Qualcomm Multiple Chipsets Use-After-Free Vulnerability
Memory corruption while rendering graphics using Adreno GPU drivers in Chrome.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Follow applicable BOD 22-01 guidance for cloud services.
- Compensating control
Discontinue use of the affected product (Google Chrome or Qualcomm Multiple Chipsets) if mitigations are unavailable.
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-27038?
CVE-2025-27038 is rated as a high-severity vulnerability due to potential exploits that can lead to memory corruption.
How do I fix CVE-2025-27038?
To mitigate CVE-2025-27038, ensure that you update to the latest version of Google Chrome as soon as an update is available.
What causes the vulnerability CVE-2025-27038?
CVE-2025-27038 is caused by memory corruption during graphic rendering using Adreno GPU drivers in the Chrome browser.
Is CVE-2025-27038 being actively exploited?
Yes, CVE-2025-27038 has been reported to be exploited in the wild, which emphasizes the importance of updating software promptly.
Who is affected by CVE-2025-27038?
Users of Google Chrome that utilize devices with Adreno GPU drivers are affected by CVE-2025-27038.