2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2022-25697" ,
"sourceIdentifier" : "product-security@qualcomm.com" ,
"published" : "2022-12-13T16:15:18.490" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-21T06:52:45.573" ,
"vulnStatus" : "Modified" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Memory corruption in i2c buses due to improper input validation while reading address configuration from i2c driver in Snapdragon Mobile, Snapdragon Wearables"
2024-04-04 08:46:00 +00:00
} ,
{
"lang" : "es" ,
"value" : "Corrupci\u00f3n de la memoria en los buses i2c debido a una validaci\u00f3n de entrada incorrecta al leer la configuraci\u00f3n de la direcci\u00f3n del controlador i2c en Snapdragon Mobile, Snapdragon Wearables"
2023-04-24 12:24:31 +02:00
}
] ,
"metrics" : {
"cvssMetricV31" : [
{
2024-12-08 03:06:42 +00:00
"source" : "product-security@qualcomm.com" ,
"type" : "Secondary" ,
2023-04-24 12:24:31 +02:00
"cvssData" : {
"version" : "3.1" ,
2024-12-08 03:06:42 +00:00
"vectorString" : "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" ,
"baseScore" : 8.4 ,
"baseSeverity" : "HIGH" ,
2023-04-24 12:24:31 +02:00
"attackVector" : "LOCAL" ,
"attackComplexity" : "LOW" ,
2024-12-08 03:06:42 +00:00
"privilegesRequired" : "NONE" ,
2023-04-24 12:24:31 +02:00
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2023-04-24 12:24:31 +02:00
} ,
2024-12-08 03:06:42 +00:00
"exploitabilityScore" : 2.5 ,
2023-04-24 12:24:31 +02:00
"impactScore" : 5.9
} ,
{
2024-12-08 03:06:42 +00:00
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
2023-04-24 12:24:31 +02:00
"cvssData" : {
"version" : "3.1" ,
2024-12-08 03:06:42 +00:00
"vectorString" : "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" ,
"baseScore" : 7.8 ,
"baseSeverity" : "HIGH" ,
2023-04-24 12:24:31 +02:00
"attackVector" : "LOCAL" ,
"attackComplexity" : "LOW" ,
2024-12-08 03:06:42 +00:00
"privilegesRequired" : "LOW" ,
2023-04-24 12:24:31 +02:00
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2023-04-24 12:24:31 +02:00
} ,
2024-12-08 03:06:42 +00:00
"exploitabilityScore" : 1.8 ,
2023-04-24 12:24:31 +02:00
"impactScore" : 5.9
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
2024-04-04 08:46:00 +00:00
"value" : "CWE-787"
2023-04-24 12:24:31 +02:00
}
]
}
] ,
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:sd_8_gen1_5g_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "76910884-45D9-4EA2-BA30-44A8C7CC1339"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:sm8475:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E626A19A-DBE3-4DE9-90DA-FA3F883FF3CF"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:sd429_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D32539EB-9822-4864-8ECA-E9F9FB86CD25"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:sd429:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3945686E-666C-4A47-A062-608AD8C6F112"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:sda429w_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "913796B0-E3FB-4654-89A8-ED72D45A8D4E"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:sda429w:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6616E0B9-B10F-483C-9B28-0A0557DC3372"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:sdm429w_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C7E52771-4FB7-45DB-A349-4DD911F53752"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:sdm429w:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "72F6CE39-9299-4FC3-BC48-11F79034F2E4"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "70292B01-617F-44AD-AF77-1AFC1450523D"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FA94C6D6-85DB-4031-AAF4-C399019AE16D"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wcn3610_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DAFD64E7-3F13-4DCA-8C46-6E8FE0C6F798"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wcn3610:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "044A14FB-64F6-4200-AC85-8DC91C31BD16"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wcn3620_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D99CA230-0694-4898-A06E-9C522CCB86CE"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "62B00662-139A-4E36-98FA-D4F7D101D4AB"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wcn3660b_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FB37B5DB-2493-4082-B2BF-60385B7E027C"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6BCD2FE2-11F2-4B2A-9BD7-EB26718139DA"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wcn3680b_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0755F669-6D7E-454A-95DA-D60FA0696FD9"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wcn3680b:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BE861CE7-B530-4698-A9BC-43A159647BF2"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wcn3980_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "9C6E9038-9B18-4958-BE1E-215901C9B4B2"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B36D3274-F8D0-49C5-A6D5-95F5DC6D1950"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wcn6855_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "180EB150-C114-429D-941F-9B99CDA4F810"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wcn6855:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "93BA62AF-3555-463A-8B51-76F07BF0B87E"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wcn6856_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "54C616C5-6480-4FE0-9A1C-08026CCB08D8"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wcn6856:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7D8E02BA-3A7E-4B13-A8D7-20FD0FAE3187"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wcn7850_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "16EB11D8-27A3-4D04-B863-7FD4549D0BCD"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wcn7850:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "CF9B5B84-3C57-4D3D-AFF0-958A19DE09E8"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wcn7851_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2FFC44DC-DA90-45F5-ACC1-5262D3E3A796"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wcn7851:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EE9D9A56-2157-43F0-BB18-2B7249D7E021"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "11B69595-E488-4590-A150-CE5BE08B5E13"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BF680174-5FA6-47D9-8EAB-CC2A37A7BD42"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F80BC68E-7476-4A40-9F48-53722FE9A5BF"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6B36F4B2-BAA3-45AD-9967-0EB482C99708"
}
]
}
]
}
] ,
"references" : [
{
"url" : "https://www.qualcomm.com/company/product-security/bulletins/december-2022-bulletin" ,
"source" : "product-security@qualcomm.com" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://www.qualcomm.com/company/product-security/bulletins/december-2022-bulletin" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2023-04-24 12:24:31 +02:00
}
]
}