Memory Corruption in Snapdragon Products by Qualcomm
CVE-2022-25695
Key Information:
Summary
This vulnerability involves a memory corruption issue within Qualcomm's Snapdragon platforms due to improper validation of array indices during the processing of GSTK Proactive commands. It affects a wide range of Snapdragon products, potentially exposing them to various security risks. Users and developers are advised to review affected product documentation and implement recommended security measures.
Affected Version(s)
Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables APQ8009
Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables APQ8009W
Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables APQ8017
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved