CVE-2022-25674: Critical severity qualcomm ar8031 vulnerability
Cryptographic issues in WLAN during the group key handshake of the WPA/WPA2 protocol in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-25674?
CVE-2022-25674 is a vulnerability related to cryptographic issues in the WLAN during the group key handshake of the WPA/WPA2 protocol in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music.
Which software is affected by CVE-2022-25674?
CVE-2022-25674 affects Qualcomm AR8031 Firmware, Qualcomm CSRA6620 Firmware, Qualcomm CSRA6640 Firmware, Qualcomm MDM9205 Firmware, Qualcomm QCA4004 Firmware, Qualcomm QCA4010 Firmware, Qualcomm QCA4020 Firmware, Qualcomm QCA4024 Firmware, Qualcomm QCS405 Firmware, Qualcomm WCD9306 Firmware, Qualcomm WCD9335 Firmware, Qualcomm WCN3980 Firmware, Qualcomm WCN3998 Firmware, Qualcomm WCN3999 Firmware, Qualcomm WSA8810 Firmware, and Qualcomm WSA8815 Firmware.
What is the severity of CVE-2022-25674?
The severity of CVE-2022-25674 is critical with a CVSS score of 9.8.
How does CVE-2022-25674 impact the affected software?
CVE-2022-25674 introduces cryptographic issues in the WLAN group key handshake of the WPA/WPA2 protocol, potentially allowing unauthorized access to the network.
How can I fix CVE-2022-25674?
Please refer to the official Qualcomm November 2022 Bulletin for the latest information on fixes and patches for CVE-2022-25674.