Memory corruption in WLAN due to buffer copy without checking size of input while parsing keys in Snapdragon Connectivity, Snapdragon Mobile
                
            References
                    | Link | Resource | 
|---|---|
| https://www.qualcomm.com/company/product-security/bulletins/september-2022-bulletin | Vendor Advisory | 
| https://www.qualcomm.com/company/product-security/bulletins/september-2022-bulletin | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
Configuration 2 (hide)
| AND | 
 
 | 
Configuration 3 (hide)
| AND | 
 
 | 
Configuration 4 (hide)
| AND | 
 
 | 
Configuration 5 (hide)
| AND | 
 
 | 
Configuration 6 (hide)
| AND | 
 
 | 
Configuration 7 (hide)
| AND | 
 
 | 
Configuration 8 (hide)
| AND | 
 
 | 
Configuration 9 (hide)
| AND | 
 
 | 
Configuration 10 (hide)
| AND | 
 
 | 
Configuration 11 (hide)
| AND | 
 
 | 
Configuration 12 (hide)
| AND | 
 
 | 
Configuration 13 (hide)
| AND | 
 
 | 
Configuration 14 (hide)
| AND | 
 
 | 
Configuration 15 (hide)
| AND | 
 
 | 
Configuration 16 (hide)
| AND | 
 
 | 
Configuration 17 (hide)
| AND | 
 
 | 
History
                    21 Nov 2024, 06:52
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://www.qualcomm.com/company/product-security/bulletins/september-2022-bulletin - Vendor Advisory | 
19 Apr 2023, 17:10
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | v2 : v3 : | v2 : unknown v3 : 9.8 | 
| CWE | CWE-120 | |
| CPE | cpe:2.3:h:qualcomm:wcn6851:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcd9375:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcn6750:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcn6850:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wsa8832:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcd9370:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcn7850:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcn7851_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcn6850_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sm7450_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcn6856:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sd_8_gen1_5g_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sm7450:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcd9370_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcn7851:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcn6855:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcn6856_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sd888_5g:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcn6855_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wsa8832_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sm8475:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcn6750_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcn6851_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcn7850_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sd888_5g_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcd9375_firmware:-:*:*:*:*:*:*:* | |
| References | (CONFIRM) https://www.qualcomm.com/company/product-security/bulletins/september-2022-bulletin - Vendor Advisory | 
16 Sep 2022, 06:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2022-09-16 06:15
Updated : 2025-06-04 15:15
NVD link : CVE-2022-25708
Mitre link : CVE-2022-25708
CVE.ORG link : CVE-2022-25708
JSON object : View
Products Affected
                qualcomm
- wcd9370
- wsa8830_firmware
- wcn7850_firmware
- sd888_5g_firmware
- sm7450
- wcn6856
- wcn7851_firmware
- sm7450_firmware
- wcd9375
- wcn6855_firmware
- wcd9375_firmware
- wsa8830
- wcn6851_firmware
- wcn6855
- wcn7850
- wsa8832_firmware
- sd888_5g
- wcn6856_firmware
- wcn6851
- wsa8835_firmware
- wcn6850_firmware
- wcn6850
- wcd9385_firmware
- wcd9380
- wcd9385
- wcn7851
- wsa8832
- wcn6750
- sd_8_gen1_5g_firmware
- wsa8835
- wcd9370_firmware
- wcd9380_firmware
- sm8475
- wcn6750_firmware
CWE
                
                    
                        
                        CWE-120
                        
            Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
