7.5

CVE-2022-25739

Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call

Data is provided by the National Vulnerability Database (NVD)
QualcommMdm9205 Firmware Version-
   QualcommMdm9205 Version-
QualcommMdm9206 Firmware Version-
   QualcommMdm9206 Version-
QualcommMdm9207 Firmware Version-
   QualcommMdm9207 Version-
QualcommMdm8207 Firmware Version-
   QualcommMdm8207 Version-
QualcommQca4004 Firmware Version-
   QualcommQca4004 Version-
QualcommQts110 Firmware Version-
   QualcommQts110 Version-
QualcommSsg2115p Firmware Version-
   QualcommSsg2115p Version-
QualcommSsg2125p Firmware Version-
   QualcommSsg2125p Version-
QualcommSxr1230p Firmware Version-
   QualcommSxr1230p Version-
QualcommSxr2230p Firmware Version-
   QualcommSxr2230p Version-
QualcommWcd9306 Firmware Version-
   QualcommWcd9306 Version-
QualcommWcd9330 Firmware Version-
   QualcommWcd9330 Version-
QualcommWcd9380 Firmware Version-
   QualcommWcd9380 Version-
QualcommWcd9385 Firmware Version-
   QualcommWcd9385 Version-
QualcommWsa8830 Firmware Version-
   QualcommWsa8830 Version-
QualcommWsa8832 Firmware Version-
   QualcommWsa8832 Version-
QualcommWsa8835 Firmware Version-
   QualcommWsa8835 Version-
QualcommWcn685x-1 Firmware Version-
   QualcommWcn685x-1 Version-
QualcommWcn785x-1 Firmware Version-
   QualcommWcn785x-1 Version-
QualcommWcn685x-5 Firmware Version-
   QualcommWcn685x-5 Version-
QualcommWcn785x-5 Firmware Version-
   QualcommWcn785x-5 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.12% 0.282
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
product-security@qualcomm.com 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.