📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global general Consumer Electronics and Retail MEDIUM 2h Global supply_chain Software Development and Technology HIGH 2h Global general Artificial Intelligence and Software Development LOW 3h Global general Artificial Intelligence and Cybersecurity MEDIUM 3h Global malware Software Development / Technology HIGH 4h Global vulnerability Information Technology HIGH 4h Global data_breach Water Utilities / Critical Infrastructure HIGH 4h Global general Cybersecurity Services HIGH 5h Global data_breach Pharmaceutical HIGH 5h Global vulnerability Technology, Artificial Intelligence CRITICAL 6h Global general Consumer Electronics and Retail MEDIUM 2h Global supply_chain Software Development and Technology HIGH 2h Global general Artificial Intelligence and Software Development LOW 3h Global general Artificial Intelligence and Cybersecurity MEDIUM 3h Global malware Software Development / Technology HIGH 4h Global vulnerability Information Technology HIGH 4h Global data_breach Water Utilities / Critical Infrastructure HIGH 4h Global general Cybersecurity Services HIGH 5h Global data_breach Pharmaceutical HIGH 5h Global vulnerability Technology, Artificial Intelligence CRITICAL 6h Global general Consumer Electronics and Retail MEDIUM 2h Global supply_chain Software Development and Technology HIGH 2h Global general Artificial Intelligence and Software Development LOW 3h Global general Artificial Intelligence and Cybersecurity MEDIUM 3h Global malware Software Development / Technology HIGH 4h Global vulnerability Information Technology HIGH 4h Global data_breach Water Utilities / Critical Infrastructure HIGH 4h Global general Cybersecurity Services HIGH 5h Global data_breach Pharmaceutical HIGH 5h Global vulnerability Technology, Artificial Intelligence CRITICAL 6h
Vulnerabilities

CVE-2025-47371

Medium
Transient DOS when an LTE RLC packet with invalid TB is received by UE.
CWE-617 — Weakness Type
Published: Mar 2, 2026  ·  Modified: Mar 5, 2026  ·  Source: NVD
CVSS v3
6.5
🔗 NVD Official
📄 Description (English)

Transient DOS when an LTE RLC packet with invalid TB is received by UE.

🤖 AI Executive Summary

CVE-2025-47371 is a transient denial-of-service vulnerability in Qualcomm LTE RLC packet processing affecting multiple 5G and wireless connectivity platforms. When a user equipment (UE) receives an LTE RLC packet with an invalid Transport Block (TB), the device experiences temporary service disruption. With no patch currently available and medium CVSS score of 6.5, this poses operational risk to Saudi telecom infrastructure and 5G deployments.

📄 Description (Arabic)

🤖 AI Intelligence Analysis Analyzed: May 11, 2026 05:01
🇸🇦 Saudi Arabia Impact Assessment
Primary impact on Saudi telecom sector (STC, Mobily, Zain) operating 5G FWA (Fixed Wireless Access) networks and LTE infrastructure. Secondary impact on government entities using 5G connectivity for critical communications. Healthcare sector relying on 5G-enabled telemedicine and IoT devices may experience service disruptions. Energy sector (ARAMCO) utilizing 5G for industrial IoT and remote monitoring could face operational delays. Banking sector dependent on mobile connectivity for transaction processing may experience temporary service degradation. The vulnerability affects Qualcomm FastConnect chipsets widely deployed in Saudi enterprise and consumer devices.
🏢 Affected Saudi Sectors
Telecommunications (STC, Mobily, Zain) Government and Public Administration Healthcare and Telemedicine Energy and Utilities (ARAMCO) Banking and Financial Services Enterprise IT and IoT
⚖️ Saudi Risk Score (AI)
6.2
/ 10.0
🔧 Remediation Steps (English)
IMMEDIATE ACTIONS:
1. Inventory all Qualcomm-based devices using affected firmware versions (5G FWA platforms, FastConnect 6200/6700/6800/6900/7800, AR8035, CSRA6620/6640)
2. Monitor network logs for malformed LTE RLC packets with invalid TB indicators
3. Implement network-level filtering to detect and drop packets with invalid TB values

COMPENSATING CONTROLS (until patch available):
4. Deploy DPI (Deep Packet Inspection) rules to identify and block malformed RLC packets at network edge
5. Configure UE watchdog timers to auto-recover from transient DOS within 30 seconds
6. Implement rate limiting on RLC packet processing to prevent cascading failures
7. Enable enhanced logging for RLC packet anomalies for forensic analysis

PATCHING GUIDANCE:
8. Subscribe to Qualcomm security bulletins for firmware updates addressing CWE-617
9. Establish firmware update procedures for affected platforms once patches are released
10. Prioritize patching of 5G FWA platforms serving critical infrastructure

DETECTION RULES:
11. Monitor for repeated UE disconnections/reconnections within short timeframes
12. Alert on RLC layer errors with invalid TB field values
13. Track device recovery times from transient DOS events
🔧 خطوات المعالجة (العربية)
الإجراءات الفورية:
1. حصر جميع أجهزة Qualcomm التي تستخدم إصدارات البرامج الثابتة المتأثرة (منصات 5G FWA، FastConnect 6200/6700/6800/6900/7800، AR8035، CSRA6620/6640)
2. مراقبة سجلات الشبكة للكشف عن حزم LTE RLC المشوهة ذات مؤشرات TB غير صحيحة
3. تطبيق تصفية على مستوى الشبكة للكشف عن الحزم ذات قيم TB غير صحيحة وحجبها

الضوابط التعويضية (حتى توفر التصحيح):
4. نشر قواعد DPI للكشف عن حزم RLC المشوهة وحجبها على حافة الشبكة
5. تكوين مؤقتات المراقبة على UE للتعافي التلقائي من حجب الخدمة المؤقتة خلال 30 ثانية
6. تطبيق تحديد معدل على معالجة حزم RLC لمنع الفشل المتسلسل
7. تفعيل السجلات المحسنة لشذوذ حزم RLC للتحليل الجنائي

إرشادات التصحيح:
8. الاشتراك في نشرات أمان Qualcomm للحصول على تحديثات البرامج الثابتة التي تعالج CWE-617
9. إنشاء إجراءات تحديث البرامج الثابتة للمنصات المتأثرة بمجرد إصدار التصحيحات
10. إعطاء الأولوية لتصحيح منصات 5G FWA التي تخدم البنية التحتية الحرجة

قواعد الكشف:
11. مراقبة قطع الاتصال المتكرر للأجهزة/إعادة الاتصال خلال فترات زمنية قصيرة
12. تنبيهات على أخطاء طبقة RLC ذات قيم حقل TB غير صحيحة
13. تتبع أوقات تعافي الأجهزة من أحداث حجب الخدمة المؤقتة
📋 Regulatory Compliance Mapping
🟢 NCA ECC 2024
ECC 2024 A.12.6.1 - Management of technical vulnerabilities in network infrastructure ECC 2024 A.12.2.1 - Change management for firmware and software updates ECC 2024 A.12.3.1 - Segregation of networks and network services
🔵 SAMA CSF
SAMA CSF ID.BE-3.1 - Resilience of critical systems SAMA CSF PR.IP-1.1 - Information security policies and procedures SAMA CSF DE.CM-1.1 - Detection and monitoring of anomalous activity
🟡 ISO 27001:2022
ISO 27001:2022 A.12.2.1 - Change management procedures ISO 27001:2022 A.12.6.1 - Management of technical vulnerabilities ISO 27001:2022 A.13.1.1 - Network security perimeter
🟣 PCI DSS v4.0.1
PCI DSS 6.2 - Security patches for system components PCI DSS 11.2 - Vulnerability scanning and remediation
📦 Affected Products / CPE 50 entries
qualcomm:5g_fixed_wireless_access_platform_firmware:-
qualcomm:ar8035_firmware:-
qualcomm:csra6620_firmware:-
qualcomm:csra6640_firmware:-
qualcomm:fastconnect_6200_firmware:-
qualcomm:fastconnect_6700_firmware:-
qualcomm:fastconnect_6800_firmware:-
qualcomm:fastconnect_6900_firmware:-
qualcomm:fastconnect_7800_firmware:-
qualcomm:fwa_gen_3_ultra_firmware:-
qualcomm:g1_gen_1_firmware:-
qualcomm:milos_firmware:-
qualcomm:netrani_firmware:-
qualcomm:orne_firmware:-
qualcomm:palawan25_firmware:-
qualcomm:qca6174a_firmware:-
qualcomm:qca6391_firmware:-
qualcomm:qca6574a_firmware:-
qualcomm:qca6574au_firmware:-
qualcomm:qca6584au_firmware:-
qualcomm:qca6595au_firmware:-
qualcomm:qca6678aq_firmware:-
qualcomm:qca6688aq_firmware:-
qualcomm:qca6696_firmware:-
qualcomm:qca6698aq_firmware:-
qualcomm:qca6698au_firmware:-
qualcomm:qca6797aq_firmware:-
qualcomm:qca8081_firmware:-
qualcomm:qca8337_firmware:-
qualcomm:qcc710_firmware:-
qualcomm:qcm2290_firmware:-
qualcomm:qcm4325_firmware:-
qualcomm:qcm4490_firmware:-
qualcomm:qcn6024_firmware:-
qualcomm:qcn6224_firmware:-
qualcomm:qcn6274_firmware:-
qualcomm:qcn9011_firmware:-
qualcomm:qcn9012_firmware:-
qualcomm:qcn9024_firmware:-
qualcomm:qcs2290_firmware:-
qualcomm:qcs4290_firmware:-
qualcomm:qcs4490_firmware:-
qualcomm:qcs8550_firmware:-
qualcomm:qfw7114_firmware:-
qualcomm:qfw7124_firmware:-
qualcomm:qmp1000_firmware:-
qualcomm:robotics_rb2_platform_firmware:-
qualcomm:snapdragon_8_gen_1_firmware:-
qualcomm:sd662_firmware:-
qualcomm:sdx61_firmware:-
📊 CVSS Score
6.5
/ 10.0 — Medium
📊 CVSS Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack VectorA — Adjacent
Attack ComplexityL — Low / Local
Privileges RequiredN — None / Network
User InteractionN — None / Network
ScopeU — Unchanged
ConfidentialityN — None / Network
IntegrityN — None / Network
AvailabilityH — High
📋 Quick Facts
Severity Medium
CVSS Score6.5
CWECWE-617
Exploit No
Patch ✗ No
Published 2026-03-02
Source Feed nvd
Views 5
🇸🇦 Saudi Risk Score
6.2
/ 10.0 — Saudi Risk
Priority: HIGH
🏷️ Tags
CWE-617
Share this CVE
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.