Memory Corruption Vulnerability in Qualcomm Snapdragon Products
CVE-2022-25711
6.7MEDIUM
Key Information:
- Vendor
- Qualcomm
- Vendor
- CVE Published:
- 13 December 2022
Summary
The vulnerability stems from improper validation of an array index in various Qualcomm Snapdragon products, potentially leading to memory corruption. This could allow unauthorized access or manipulation of system resources, impacting the overall security and functionality of affected devices.
Affected Version(s)
Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables AQT1000
Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables MDM9150
Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables QCA6390
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved