Lucene search

K
cveQualcommCVE-2022-33297
HistoryApr 13, 2023 - 7:15 a.m.

CVE-2022-33297

2023-04-1307:15:18
CWE-126
CWE-125
qualcomm
web.nvd.nist.gov
38
cve-2022-33297
information disclosure
buffer overread
linux sensors
nvd

CVSS3

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L

AI Score

5.5

Confidence

High

EPSS

0

Percentile

9.0%

Information disclosure due to buffer overread in Linux sensors

Affected configurations

Nvd
Node
qualcommqca6310_firmwareMatch-
AND
qualcommqca6310Match-
Node
qualcommqca6320_firmwareMatch-
AND
qualcommqca6320Match-
Node
qualcommsd835_firmwareMatch-
AND
qualcommsd835Match-
Node
qualcommsnapdragon_835_mobile_platform_firmwareMatch-
AND
qualcommsnapdragon_835_mobile_platformMatch-
Node
qualcommwcd9335_firmwareMatch-
AND
qualcommwcd9335Match-
Node
qualcommwcd9340_firmwareMatch-
AND
qualcommwcd9340Match-
Node
qualcommwcd9341_firmwareMatch-
AND
qualcommwcd9341Match-
Node
qualcommwcn3990_firmwareMatch-
AND
qualcommwcn3990Match-
Node
qualcommwsa8810_firmwareMatch-
AND
qualcommwsa8810Match-
Node
qualcommwsa8815_firmwareMatch-
AND
qualcommwsa8815Match-
VendorProductVersionCPE
qualcommqca6310_firmware-cpe:2.3:o:qualcomm:qca6310_firmware:-:*:*:*:*:*:*:*
qualcommqca6310-cpe:2.3:h:qualcomm:qca6310:-:*:*:*:*:*:*:*
qualcommqca6320_firmware-cpe:2.3:o:qualcomm:qca6320_firmware:-:*:*:*:*:*:*:*
qualcommqca6320-cpe:2.3:h:qualcomm:qca6320:-:*:*:*:*:*:*:*
qualcommsd835_firmware-cpe:2.3:o:qualcomm:sd835_firmware:-:*:*:*:*:*:*:*
qualcommsd835-cpe:2.3:h:qualcomm:sd835:-:*:*:*:*:*:*:*
qualcommsnapdragon_835_mobile_platform_firmware-cpe:2.3:o:qualcomm:snapdragon_835_mobile_platform_firmware:-:*:*:*:*:*:*:*
qualcommsnapdragon_835_mobile_platform-cpe:2.3:h:qualcomm:snapdragon_835_mobile_platform:-:*:*:*:*:*:*:*
qualcommwcd9335_firmware-cpe:2.3:o:qualcomm:wcd9335_firmware:-:*:*:*:*:*:*:*
qualcommwcd9335-cpe:2.3:h:qualcomm:wcd9335:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 201

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "platforms": [
      "Snapdragon Mobile"
    ],
    "product": "Snapdragon",
    "vendor": "Qualcomm, Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "QCA6310"
      },
      {
        "status": "affected",
        "version": "QCA6320"
      },
      {
        "status": "affected",
        "version": "SD835"
      },
      {
        "status": "affected",
        "version": "Snapdragon 835 Mobile Platform"
      },
      {
        "status": "affected",
        "version": "WCD9335"
      },
      {
        "status": "affected",
        "version": "WCD9340"
      },
      {
        "status": "affected",
        "version": "WCD9341"
      },
      {
        "status": "affected",
        "version": "WCN3990"
      },
      {
        "status": "affected",
        "version": "WSA8810"
      },
      {
        "status": "affected",
        "version": "WSA8815"
      }
    ]
  }
]

CVSS3

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L

AI Score

5.5

Confidence

High

EPSS

0

Percentile

9.0%

Related for CVE-2022-33297