Lucene search

K
cvelistQualcommCVELIST:CVE-2022-25709
HistoryMar 07, 2023 - 4:43 a.m.

CVE-2022-25709 Use of Out-of-range Pointer Offset in Data Modem

2023-03-0704:43:20
CWE-823
qualcomm
www.cve.org
6
cve-2022-25709
data modem
memory corruption
qmi message.

CVSS3

8.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

8.7

Confidence

High

EPSS

0

Percentile

13.3%

Memory corruption in modem due to use of out of range pointer offset while processing qmi msg

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "platforms": [
      "Snapdragon Auto",
      "Snapdragon Compute",
      "Snapdragon Consumer IOT",
      "Snapdragon Industrial IOT",
      "Snapdragon Mobile"
    ],
    "product": "Snapdragon",
    "vendor": "Qualcomm, Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "AR8035"
      },
      {
        "status": "affected",
        "version": "QCA6174A"
      },
      {
        "status": "affected",
        "version": "QCA6310"
      },
      {
        "status": "affected",
        "version": "QCA6320"
      },
      {
        "status": "affected",
        "version": "QCA6390"
      },
      {
        "status": "affected",
        "version": "QCA6391"
      },
      {
        "status": "affected",
        "version": "QCA6421"
      },
      {
        "status": "affected",
        "version": "QCA6426"
      },
      {
        "status": "affected",
        "version": "QCA6431"
      },
      {
        "status": "affected",
        "version": "QCA6436"
      },
      {
        "status": "affected",
        "version": "QCA8081"
      },
      {
        "status": "affected",
        "version": "QCA8337"
      },
      {
        "status": "affected",
        "version": "QCN6024"
      },
      {
        "status": "affected",
        "version": "QCN9024"
      },
      {
        "status": "affected",
        "version": "QCX315"
      },
      {
        "status": "affected",
        "version": "SA515M"
      },
      {
        "status": "affected",
        "version": "SD 675"
      },
      {
        "status": "affected",
        "version": "SD 8 Gen1 5G"
      },
      {
        "status": "affected",
        "version": "SD480"
      },
      {
        "status": "affected",
        "version": "SD675"
      },
      {
        "status": "affected",
        "version": "SD678"
      },
      {
        "status": "affected",
        "version": "SD690 5G"
      },
      {
        "status": "affected",
        "version": "SD695"
      },
      {
        "status": "affected",
        "version": "SD720G"
      },
      {
        "status": "affected",
        "version": "SD730"
      },
      {
        "status": "affected",
        "version": "SD750G"
      },
      {
        "status": "affected",
        "version": "SD765"
      },
      {
        "status": "affected",
        "version": "SD765G"
      },
      {
        "status": "affected",
        "version": "SD768G"
      },
      {
        "status": "affected",
        "version": "SD7c"
      },
      {
        "status": "affected",
        "version": "SD820"
      },
      {
        "status": "affected",
        "version": "SD821"
      },
      {
        "status": "affected",
        "version": "SD835"
      },
      {
        "status": "affected",
        "version": "SD855"
      },
      {
        "status": "affected",
        "version": "SD865 5G"
      },
      {
        "status": "affected",
        "version": "SD870"
      },
      {
        "status": "affected",
        "version": "SDX55"
      },
      {
        "status": "affected",
        "version": "SDX55M"
      },
      {
        "status": "affected",
        "version": "SDX65"
      },
      {
        "status": "affected",
        "version": "SDX70M"
      },
      {
        "status": "affected",
        "version": "SDXR2 5G"
      },
      {
        "status": "affected",
        "version": "SM6250"
      },
      {
        "status": "affected",
        "version": "SM6250P"
      },
      {
        "status": "affected",
        "version": "SM7250P"
      },
      {
        "status": "affected",
        "version": "Snapdragon 4 Gen 1"
      },
      {
        "status": "affected",
        "version": "WCD9335"
      },
      {
        "status": "affected",
        "version": "WCD9340"
      },
      {
        "status": "affected",
        "version": "WCD9341"
      },
      {
        "status": "affected",
        "version": "WCD9370"
      },
      {
        "status": "affected",
        "version": "WCD9375"
      },
      {
        "status": "affected",
        "version": "WCD9380"
      },
      {
        "status": "affected",
        "version": "WCD9385"
      },
      {
        "status": "affected",
        "version": "WCN3950"
      },
      {
        "status": "affected",
        "version": "WCN3980"
      },
      {
        "status": "affected",
        "version": "WCN3988"
      },
      {
        "status": "affected",
        "version": "WCN3990"
      },
      {
        "status": "affected",
        "version": "WCN3991"
      },
      {
        "status": "affected",
        "version": "WCN3998"
      },
      {
        "status": "affected",
        "version": "WCN6850"
      },
      {
        "status": "affected",
        "version": "WCN6851"
      },
      {
        "status": "affected",
        "version": "WCN6855"
      },
      {
        "status": "affected",
        "version": "WCN6856"
      },
      {
        "status": "affected",
        "version": "WCN7850"
      },
      {
        "status": "affected",
        "version": "WCN7851"
      },
      {
        "status": "affected",
        "version": "WSA8810"
      },
      {
        "status": "affected",
        "version": "WSA8815"
      },
      {
        "status": "affected",
        "version": "WSA8830"
      },
      {
        "status": "affected",
        "version": "WSA8835"
      }
    ]
  }
]

CVSS3

8.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

8.7

Confidence

High

EPSS

0

Percentile

13.3%

Related for CVELIST:CVE-2022-25709