CVE-2022-25654

EUVD-2022-30309
Memory corruption in kernel due to improper input validation while processing ION commands in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wearables
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.7 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
6.7 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 28%
Affected Products (NVD)
VendorProductVersion
qualcommapq8096au_firmware
-
qualcommmdm9650_firmware
-
qualcommqca6174a_firmware
-
qualcommqca6574au_firmware
-
qualcommqcs603_firmware
-
qualcommqcs605_firmware
-
qualcommqualcomm215_firmware
-
qualcommsd429_firmware
-
qualcommsd820_firmware
-
qualcommsdm429w_firmware
-
qualcommwcd9326_firmware
-
qualcommwcd9335_firmware
-
qualcommwcd9341_firmware
-
qualcommwcn3615_firmware
-
qualcommwcn3620_firmware
-
qualcommwcn3660b_firmware
-
qualcommwcn3680_firmware
-
qualcommwcn3980_firmware
-
qualcommwcn3990_firmware
-
qualcommwsa8810_firmware
-
qualcommwsa8815_firmware
-
𝑥
= Vulnerable software versions