Lucene search

K
cvelistQualcommCVELIST:CVE-2022-33270
HistoryApr 04, 2023 - 4:46 a.m.

CVE-2022-33270 Time-of-check time-of-use race condition in Modem

2023-04-0404:46:34
CWE-367
qualcomm
www.cve.org
5
cve-2022-33270
transient dos
rrc reconfiguration

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

37.5%

Transient DOS due to time-of-check time-of-use race condition in Modem while processing RRC Reconfiguration message.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "platforms": [
      "Snapdragon Auto",
      "Snapdragon Industrial IOT",
      "Snapdragon Mobile"
    ],
    "product": "Snapdragon",
    "vendor": "Qualcomm, Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "AR8035"
      },
      {
        "status": "affected",
        "version": "FastConnect 6200"
      },
      {
        "status": "affected",
        "version": "FastConnect 6700"
      },
      {
        "status": "affected",
        "version": "FastConnect 6900"
      },
      {
        "status": "affected",
        "version": "FastConnect 7800"
      },
      {
        "status": "affected",
        "version": "QCA6391"
      },
      {
        "status": "affected",
        "version": "QCA6595AU"
      },
      {
        "status": "affected",
        "version": "QCA6696"
      },
      {
        "status": "affected",
        "version": "QCA6698AQ"
      },
      {
        "status": "affected",
        "version": "QCA8081"
      },
      {
        "status": "affected",
        "version": "QCA8337"
      },
      {
        "status": "affected",
        "version": "QCM6490"
      },
      {
        "status": "affected",
        "version": "QCN6024"
      },
      {
        "status": "affected",
        "version": "QCN9024"
      },
      {
        "status": "affected",
        "version": "QCS6490"
      },
      {
        "status": "affected",
        "version": "SD778G"
      },
      {
        "status": "affected",
        "version": "SDX57M"
      },
      {
        "status": "affected",
        "version": "SM7325P"
      },
      {
        "status": "affected",
        "version": "Snapdragon 4 Gen 1 Mobile Platform"
      },
      {
        "status": "affected",
        "version": "Snapdragon 480 5G Mobile Platform"
      },
      {
        "status": "affected",
        "version": "Snapdragon 480+ 5G Mobile Platform (SM4350-AC)"
      },
      {
        "status": "affected",
        "version": "Snapdragon 695 5G Mobile Platform"
      },
      {
        "status": "affected",
        "version": "Snapdragon 778G 5G Mobile Platform"
      },
      {
        "status": "affected",
        "version": "Snapdragon 778G+ 5G Mobile Platform (SM7325-AE)"
      },
      {
        "status": "affected",
        "version": "Snapdragon 782G Mobile Platform (SM7325-AF)"
      },
      {
        "status": "affected",
        "version": "Snapdragon 8 Gen 1 Mobile Platform"
      },
      {
        "status": "affected",
        "version": "Snapdragon 888 5G Mobile Platform"
      },
      {
        "status": "affected",
        "version": "Snapdragon 888+ 5G Mobile Platform (SM8350-AC)"
      },
      {
        "status": "affected",
        "version": "Snapdragon Auto 5G Modem-RF"
      },
      {
        "status": "affected",
        "version": "Snapdragon X65 5G Modem-RF System"
      },
      {
        "status": "affected",
        "version": "Snapdragon X70 Modem-RF System"
      },
      {
        "status": "affected",
        "version": "WCD9370"
      },
      {
        "status": "affected",
        "version": "WCD9375"
      },
      {
        "status": "affected",
        "version": "WCD9380"
      },
      {
        "status": "affected",
        "version": "WCD9385"
      },
      {
        "status": "affected",
        "version": "WCN3988"
      },
      {
        "status": "affected",
        "version": "WSA8810"
      },
      {
        "status": "affected",
        "version": "WSA8815"
      },
      {
        "status": "affected",
        "version": "WSA8830"
      },
      {
        "status": "affected",
        "version": "WSA8835"
      }
    ]
  }
]

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

37.5%

Related for CVELIST:CVE-2022-33270