Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-54998
HistoryMay 30, 2022 - 12:00 a.m.

Buffer Overflow Vulnerability in Multiple Qualcomm Snapdragon Products

2022-05-3000:00:00
China National Vulnerability Database
www.cnvd.org.cn
26
qualcomm
buffer overflow
snapdragon
vulnerability
qvr service

EPSS

0

Percentile

12.6%

Qualcomm chips are chips from Qualcomm, Inc. A way to miniaturize circuits (mainly semiconductor devices, but also passive components, etc.), and is often manufactured on the surface of semiconductor wafers. Several Qualcomm Snapdragon products are vulnerable to a buffer overflow. The vulnerability stems from the QVR Service configuration in the program not properly validating the incoming buffer length, which can be exploited by an attacker to cause an over-read of the buffer.

EPSS

0

Percentile

12.6%

Related for CNVD-2022-54998