VDB

CVE-2022-25729

CVE-2022-25729 PUBLISHED CVSS 9.8 CRITICAL

Reported by qualcomm · Published February 9, 2023

Memory corruption in modem due to improper length check while copying into memory

Risk Scores

CVSS 3.1
9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Qualcomm, Inc.SnapdragonAR8031, CSRA6620, CSRA6640
qualcommqca4024_firmware-
qualcommcsra6640_firmware-
qualcommwcn6855_firmware-
qualcommssg2125p_firmware-
qualcommwcd9306_firmware*
qualcommssg2115p_firmware*
qualcommwcn7851_firmware*
qualcommar8031_firmware*
qualcommqca4004_firmware-
qualcommsxr1230p_firmware-
qualcommwcd9380_firmware-
qualcommwsa8832_firmware-
qualcommwcn3999_firmware-
qualcommwsa8835_firmware*
qualcommwcn3998_firmware-
qualcommwcd9335_firmware-
qualcommmdm9206_firmware-
qualcommcsra6620_firmware-
qualcommmdm9205_firmware-

…and 12 more

Timeline

  • Feb 9, 2023 EPSS Score
  • Feb 9, 2023 CVE Published
  • Mar 7, 2023 EPSS Score
  • Mar 21, 2023 EPSS Score
  • Apr 30, 2023 EPSS Score
  • Jun 8, 2023 EPSS Score
  • Jul 18, 2023 EPSS Score
  • Aug 27, 2023 EPSS Score
  • Oct 6, 2023 EPSS Score
  • Nov 15, 2023 EPSS Score
  • Dec 25, 2023 EPSS Score
  • Feb 2, 2024 EPSS Score

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›