CVE-2022-25732 PUBLISHED CVSS 8.2 HIGH

Reported by qualcomm · Published February 9, 2023

Information disclosure in modem due to buffer over read in dns client due to missing length check

Risk Scores

CVSS v3.1
8.2
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L

Affected Products

VendorProductVersions
Qualcomm, Inc.SnapdragonAR8031, CSRA6620, CSRA6640
Qualcomm, Inc.SnapdragonAR8031, CSRA6620, CSRA6640
qualcommsxr1230p_firmware*
qualcommwcd9385_firmware*
qualcommwsa8835_firmware*
qualcommsxr2230p_firmware*
qualcommwcn6856_firmware*
qualcommwcd9306_firmware*
qualcommqts110_firmware*
qualcommwcd9335_firmware*
qualcommmdm9207_firmware*
qualcommssg2125p_firmware*
qualcommwsa8810_firmware*
qualcommwsa8830_firmware*
qualcommcsra6640_firmware*
qualcommwsa8832_firmware*
qualcommmdm8207_firmware*
qualcommwcn3980_firmware*
qualcommssg2115p_firmware*
qualcommqca4024_firmware*

…and 15 more

Timeline

References

Open in Interactive Console →