Back to News
Security NewsHighIncidentvulnerability

Google Confirms CVE-2026-21385 in Qualcomm Android Component Exploited

UnknownMar 3, 2026(18 days ago)

A high-severity buffer over-read vulnerability (CVE-2026-21385) in a Qualcomm component used in Android devices has been exploited in the wild.

Google on Monday disclosed that a high-severity security flaw impacting an open-source Qualcomm component used in Android devices has been exploited in the wild. The vulnerability in question is CVE-2026-21385 (CVSS score: 7.8), a buffer over-read in the Graphics component. "Memory corruption when adding user-supplied data without checking available buffer space," Qualcomm said in an advisory,

Related CVEs
Potentially Affected Vendors
Google Cloud Platform

Vendors are matched automatically based on AI analysis. Verify with official sources.

Related News

Get Personalized Alerts

Track vendors and receive alerts when security incidents affect your supply chain.

What We Monitor

Security Incidents

Data breaches, ransomware, and unauthorized access

Vulnerabilities

CVEs and vendor security advisories

Compliance Updates

Regulatory changes and certification news

Legal News

Privacy laws and enforcement actions

Vendor Directory

Browse our directory of SaaS vendors with security documentation and compliance information.