← Zuruck zu CVEs
CVE-2022-25727
CRITICAL9.8
Beschreibung
Memory Corruption in modem due to improper length check while copying into memory in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music
CVE Details
CVSS v3.1 Bewertung9.8
SchweregradCRITICAL
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht11/15/2022
Zuletzt geandert4/22/2025
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
qualcomm:ar8031qualcomm:ar8031_firmwarequalcomm:csra6620qualcomm:csra6620_firmwarequalcomm:csra6640qualcomm:csra6640_firmwarequalcomm:mdm8207qualcomm:mdm8207_firmwarequalcomm:mdm9205qualcomm:mdm9205_firmwarequalcomm:mdm9206qualcomm:mdm9206_firmwarequalcomm:mdm9207qualcomm:mdm9207_firmwarequalcomm:mdm9607qualcomm:mdm9607_firmwarequalcomm:qca4004qualcomm:qca4004_firmwarequalcomm:qca4010qualcomm:qca4010_firmwarequalcomm:qca4020qualcomm:qca4020_firmwarequalcomm:qca4024qualcomm:qca4024_firmwarequalcomm:qcs405qualcomm:qcs405_firmwarequalcomm:wcd9306qualcomm:wcd9306_firmwarequalcomm:wcd9330qualcomm:wcd9330_firmwarequalcomm:wcd9335qualcomm:wcd9335_firmwarequalcomm:wcn3980qualcomm:wcn3980_firmwarequalcomm:wcn3998qualcomm:wcn3998_firmwarequalcomm:wcn3999qualcomm:wcn3999_firmwarequalcomm:wsa8810qualcomm:wsa8810_firmwarequalcomm:wsa8815qualcomm:wsa8815_firmware
Schwachen (CWE)
CWE-1284CWE-1284
Referenzen
https://www.qualcomm.com/company/product-security/bulletins/november-2022-bulletin(product-security@qualcomm.com)
https://www.qualcomm.com/company/product-security/bulletins/november-2022-bulletin(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.