CVE-2022-25708

EUVD-2022-30363
Memory corruption in WLAN due to buffer copy without checking size of input while parsing keys in Snapdragon Connectivity, Snapdragon Mobile
Classic Buffer Overflow
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 58%
Affected Products (NVD)
VendorProductVersion
qualcommsd_8_gen1_5g_firmware
-
qualcommsd888_5g_firmware
-
qualcommsm7450_firmware
-
qualcommwcd9370_firmware
-
qualcommwcd9375_firmware
-
qualcommwcd9380_firmware
-
qualcommwcd9385_firmware
-
qualcommwcn6750_firmware
-
qualcommwcn6850_firmware
-
qualcommwcn6851_firmware
-
qualcommwcn6855_firmware
-
qualcommwcn6856_firmware
-
qualcommwcn7850_firmware
-
qualcommwcn7851_firmware
-
qualcommwsa8830_firmware
-
qualcommwsa8832_firmware
-
qualcommwsa8835_firmware
-
𝑥
= Vulnerable software versions