CVE-2022-25657: Buffer Overflow
Memory corruption due to buffer overflow occurs while processing invalid MKV clip which has invalid seek header in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-25657?
The severity of CVE-2022-25657 is currently rated as critical due to the potential for memory corruption and arbitrary code execution.
What systems are affected by CVE-2022-25657?
CVE-2022-25657 affects a range of Qualcomm Snapdragon products, including Snapdragon Auto, Compute, Connectivity, Industrial IOT, Mobile, and Wearables.
How do I fix CVE-2022-25657?
To mitigate CVE-2022-25657, ensure that your device or system is updated with the latest firmware provided by Qualcomm and Google.
What vulnerabilities does CVE-2022-25657 exploit?
CVE-2022-25657 exploits a buffer overflow vulnerability that arises from processing invalid MKV clips with erroneous seek headers.
What should I do if I can't update my device for CVE-2022-25657?
If you cannot update your device for CVE-2022-25657, avoid playing MKV files from untrusted sources to mitigate potential risks.