CVE-2022-22061

EUVD-2022-27215
Out of bounds writing is possible while verifying device IDs due to improper length check before copying the data in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 12%
Affected Products (NVD)
VendorProductVersion
qualcommar8035_firmware
-
qualcommqca6390_firmware
-
qualcommqca6391_firmware
-
qualcommqca6421_firmware
-
qualcommqca6426_firmware
-
qualcommqca6431_firmware
-
qualcommqca6436_firmware
-
qualcommqca8081_firmware
-
qualcommqca8337_firmware
-
qualcommsd_8_gen1_5g_firmware
-
qualcommsd865_5g_firmware
-
qualcommsd870_firmware
-
qualcommsd888_5g_firmware
-
qualcommsdx55m_firmware
-
qualcommsdx65_firmware
-
qualcommsdxr2_5g_firmware
-
qualcommsm7450_firmware
-
qualcommsm8475_firmware
-
qualcommsm8475p_firmware
-
qualcommwcd9341_firmware
-
qualcommwcd9370_firmware
-
qualcommwcd9375_firmware
-
qualcommwcd9380_firmware
-
qualcommwcd9385_firmware
-
qualcommwcn6750_firmware
-
qualcommwcn6855_firmware
-
qualcommwcn6856_firmware
-
qualcommwcn7851_firmware
-
qualcommwsa8810_firmware
-
qualcommwsa8815_firmware
-
qualcommwsa8830_firmware
-
qualcommwsa8832_firmware
-
qualcommwsa8835_firmware
-
𝑥
= Vulnerable software versions