7.8

CVE-2022-25713

Memory corruption in Automotive due to Improper Restriction of Operations within the Bounds of a Memory Buffer while exporting a shared key.

Data is provided by the National Vulnerability Database (NVD)
QualcommAr8035 Firmware Version-
   QualcommAr8035 Version-
QualcommWcn3998 Firmware Version-
   QualcommWcn3998 Version-
QualcommQca6390 Firmware Version-
   QualcommQca6390 Version-
QualcommWcn685x-5 Firmware Version-
   QualcommWcn685x-5 Version-
QualcommWcn685x-1 Firmware Version-
   QualcommWcn685x-1 Version-
QualcommQam8295p Firmware Version-
   QualcommQam8295p Version-
QualcommQca6391 Firmware Version-
   QualcommQca6391 Version-
QualcommQca6421 Firmware Version-
   QualcommQca6421 Version-
QualcommQca6426 Firmware Version-
   QualcommQca6426 Version-
QualcommQca6431 Firmware Version-
   QualcommQca6431 Version-
QualcommQca6436 Firmware Version-
   QualcommQca6436 Version-
QualcommQca6574 Firmware Version-
   QualcommQca6574 Version-
QualcommQca6574a Firmware Version-
   QualcommQca6574a Version-
QualcommQca6574au Firmware Version-
   QualcommQca6574au Version-
QualcommQca6595au Firmware Version-
   QualcommQca6595au Version-
QualcommQca6696 Firmware Version-
   QualcommQca6696 Version-
QualcommQca6698aq Firmware Version-
   QualcommQca6698aq Version-
QualcommQca8081 Firmware Version-
   QualcommQca8081 Version-
QualcommQca8337 Firmware Version-
   QualcommQca8337 Version-
QualcommQsm8350 Firmware Version-
   QualcommQsm8350 Version-
QualcommSa4150p Firmware Version-
   QualcommSa4150p Version-
QualcommSa4155p Firmware Version-
   QualcommSa4155p Version-
QualcommSa6145p Firmware Version-
   QualcommSa6145p Version-
QualcommSa6150p Firmware Version-
   QualcommSa6150p Version-
QualcommSa6155p Firmware Version-
   QualcommSa6155p Version-
QualcommSa8145p Firmware Version-
   QualcommSa8145p Version-
QualcommSa8150p Firmware Version-
   QualcommSa8150p Version-
QualcommSa8155p Firmware Version-
   QualcommSa8155p Version-
QualcommSa8195p Firmware Version-
   QualcommSa8195p Version-
QualcommSa8295p Firmware Version-
   QualcommSa8295p Version-
QualcommSa8540p Firmware Version-
   QualcommSa8540p Version-
QualcommSa9000p Firmware Version-
   QualcommSa9000p Version-
QualcommSd 8 Gen1 5g Firmware Version-
   QualcommSd 8 Gen1 5g Version-
QualcommSd865 5g Firmware Version-
   QualcommSd865 5g Version-
QualcommSm7250p Firmware Version-
   QualcommSm7250p Version-
QualcommSm7250-aa Firmware Version-
   QualcommSm7250-aa Version-
QualcommSm7250-ab Firmware Version-
   QualcommSm7250-ab Version-
QualcommSm7250-ac Firmware Version-
   QualcommSm7250-ac Version-
QualcommSm8450 Firmware Version-
   QualcommSm8450 Version-
QualcommSm8250 Firmware Version-
   QualcommSm8250 Version-
QualcommSm8250-ab Firmware Version-
   QualcommSm8250-ab Version-
QualcommSm8250-ac Firmware Version-
   QualcommSm8250-ac Version-
QualcommSm8350 Firmware Version-
   QualcommSm8350 Version-
QualcommSm8350-ac Firmware Version-
   QualcommSm8350-ac Version-
QualcommSxr2130 Firmware Version-
   QualcommSxr2130 Version-
QualcommWcd9380 Firmware Version-
   QualcommWcd9380 Version-
QualcommWcd9385 Firmware Version-
   QualcommWcd9385 Version-
QualcommWsa8810 Firmware Version-
   QualcommWsa8810 Version-
QualcommWsa8815 Firmware Version-
   QualcommWsa8815 Version-
QualcommWsa8830 Firmware Version-
   QualcommWsa8830 Version-
QualcommWsa8835 Firmware Version-
   QualcommWsa8835 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.05% 0.127
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
product-security@qualcomm.com 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.