CVE-2022-22067: High severity qualcomm ar8035 firmware vulnerability
Potential memory leak in modem during the processing of NSA RRC Reconfiguration with invalid Radio Bearer Config in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-22067?
CVE-2022-22067 is classified as a medium severity vulnerability due to the potential for a memory leak.
How do I fix CVE-2022-22067?
To fix CVE-2022-22067, you should apply the relevant security patches provided by Qualcomm or update your Android device to the latest version.
What devices are affected by CVE-2022-22067?
CVE-2022-22067 affects a range of devices running Qualcomm Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, and Snapdragon Mobile.
What kind of attack does CVE-2022-22067 allow?
CVE-2022-22067 could potentially allow attackers to exploit the memory leak during NFC RRC Reconfiguration processes.
Can I disable features to mitigate CVE-2022-22067?
Disabling specific networking features may help reduce exposure to CVE-2022-22067, but applying the official patches is the best mitigation strategy.