CVE-2022-22086: Double Free
Memory corruption in video due to double free while parsing 3gp clip with invalid meta data atoms in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-22086?
The severity of CVE-2022-22086 is classified as critical due to the potential for memory corruption leading to system instability.
How do I fix CVE-2022-22086?
To fix CVE-2022-22086, update to the latest firmware version provided by Qualcomm or the relevant device manufacturer.
What products are affected by CVE-2022-22086?
CVE-2022-22086 affects a variety of Qualcomm Snapdragon products, including Android devices and related firmware.
What types of vulnerabilities does CVE-2022-22086 represent?
CVE-2022-22086 represents a type of memory corruption vulnerability specifically related to improper handling of 3GP clip metadata.
Is CVE-2022-22086 being actively exploited?
As of the latest reports, there is no public indication that CVE-2022-22086 is being actively exploited in the wild.