7.5
CVE-2022-40538
- EPSS 0.15%
- Published 06.06.2023 08:15:11
- Last modified 21.11.2024 07:21:40
- Source product-security@qualcomm.com
- Teams watchlist Login
- Open Login
Transient DOS due to reachable assertion in modem while processing sib with incorrect values from network.
Data is provided by the National Vulnerability Database (NVD)
Qualcomm ≫ Ar8035 Firmware Version-
Qualcomm ≫ Wcn685x-5 Firmware Version-
Qualcomm ≫ Wcn685x-1 Firmware Version-
Qualcomm ≫ Wcn785x-1 Firmware Version-
Qualcomm ≫ Wcn785x-5 Firmware Version-
Qualcomm ≫ Qca8081 Firmware Version-
Qualcomm ≫ Qca8337 Firmware Version-
Qualcomm ≫ Qcn6024 Firmware Version-
Qualcomm ≫ Qcn9024 Firmware Version-
Qualcomm ≫ Qcs8550 Firmware Version-
Qualcomm ≫ Snapdragon X70 Modem-rf System Firmware Version-
Qualcomm ≫ Wcd9380 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.15% | 0.315 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
product-security@qualcomm.com | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-617 Reachable Assertion
The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.