VDB

CVE-2022-33229

CVE-2022-33229 PUBLISHED CVSS 8.2 HIGH

Reported by qualcomm · Published February 9, 2023

Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets.

Risk Scores

CVSS v3.1
8.2
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L

Affected Products

VendorProductVersions
Qualcomm, Inc.SnapdragonAR8031, CSRA6620, CSRA6640
qualcommqca4010_firmware0
qualcommwcn3980_firmware0
qualcommmdm9206_firmware0
qualcommqca4020_firmware0
qualcommwcn3999_firmware0
qualcommqca4024_firmware0
qualcommmdm9207_firmware0
qualcommmdm8207_firmware0
qualcommwcd9330_firmware0
qualcommcsra6620_firmware0
qualcommmdm9205_firmware0
qualcommwsa8810_firmware0
qualcommqcs405_firmware0
qualcommar8031_firmware0
qualcommqts110_firmware0
qualcommwcd9306_firmware0
qualcommwsa8815_firmware0
Qualcomm, Inc.Snapdragon*, *, *
qualcommmdm9607_firmware0

…and 3 more

Timeline

  • Feb 9, 2023 EPSS Score
  • Feb 9, 2023 CVE Published
  • Mar 7, 2023 EPSS Score
  • Mar 21, 2023 EPSS Score
  • Apr 30, 2023 EPSS Score
  • Jun 8, 2023 EPSS Score
  • Jul 18, 2023 EPSS Score
  • Aug 27, 2023 EPSS Score
  • Oct 6, 2023 EPSS Score
  • Nov 15, 2023 EPSS Score
  • Dec 24, 2023 EPSS Score
  • Feb 2, 2024 EPSS Score

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›