VDB

CVE-2022-25654

CVE-2022-25654 PUBLISHED CVSS 6.699999809265137 MEDIUM

Memory corruption in kernel due to improper input validation while processing ION commands in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wearables

EPSS 0.11% · 28.5th percentile

Risk Scores

CVSS 3.1
6.699999809265137
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.11%
28.5th percentile

Affected Products

VendorProductVersions
qualcommwcd9341_firmware
qualcommwcn3620_firmware
qualcommqcs603_firmware
qualcommwcn3615_firmware
qualcommsdm429w_firmware
qualcommqca6174a_firmware
qualcommmdm9650_firmware
qualcommwcd9335_firmware
qualcommwcd9326_firmware
qualcommapq8096au_firmware
qualcommwsa8810_firmware
qualcommwsa8815_firmware
qualcommqualcomm215_firmware
qualcommwcn3660b_firmware
qualcommsd820_firmware
qualcommwcn3990_firmware
Qualcomm, Inc.Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wearables*
qualcommqca6574au_firmware
qualcommwcn3680_firmware
qualcommqcs605_firmware

…and 2 more

Timeline

  • Sep 7, 2022 CVE Published
  • Sep 16, 2022 EPSS Score
  • Oct 31, 2022 EPSS Score
  • Dec 15, 2022 EPSS Score
  • Jan 29, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Mar 15, 2023 EPSS Score
  • Apr 28, 2023 EPSS Score
  • Jun 12, 2023 EPSS Score
  • Jul 27, 2023 EPSS Score
  • Sep 10, 2023 EPSS Score
  • Oct 25, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›