CVE-2022-25728 PUBLISHED CVSS 8.2 HIGH

Reported by qualcomm · Published February 9, 2023

Information disclosure in modem due to buffer over-read while processing response from DNS server

Risk Scores

CVSS v3.1
8.2
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L

Affected Products

VendorProductVersions
Qualcomm, Inc.SnapdragonAR8031, CSRA6620, CSRA6640
qualcommsxr2230p_firmware*
qualcommmdm9205_firmware*
qualcommar8031_firmware*
qualcommwcd9335_firmware*
qualcommsxr1230p_firmware*
qualcommqca4004_firmware*
qualcommmdm8207_firmware*
qualcommmdm9206_firmware*
qualcommssg2115p_firmware*
qualcommwcn7851_firmware*
qualcommmdm9607_firmware*
qualcommqca4020_firmware*
Qualcomm, Inc.SnapdragonQTS110, SSG2115P, SSG2125P
qualcommwcn3980_firmware*
qualcommwcn3998_firmware*
qualcommqcs405_firmware*
qualcommwsa8815_firmware*
qualcommwcn7850_firmware*
qualcommwcn6856_firmware*

…and 16 more

Timeline

References

Open in Interactive Console →