Denial of Service in Snapdragon Product Lines by Qualcomm
CVE-2022-25685

7.5HIGH

Summary

The vulnerability in Qualcomm's Snapdragon product lines is due to improper authorization during error handling in multiple Snapdragon modules. This flaw could allow an attacker to perform a Denial of Service (DoS) attack, potentially disrupting the functionality of affected devices. Devices utilizing Snapdragon technology, including automotive, IoT, mobile, and wearables, are at risk, emphasizing the need for timely security updates and rigorous testing to protect against exploitation.

Affected Version(s)

Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables APQ8009

Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables APQ8017

Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables APQ8037

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.