First published: Tue Nov 15 2022(Updated: )
Cryptographic issues in WLAN during the group key handshake of the WPA/WPA2 protocol in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm ar8031 firmware | ||
Qualcomm ar8031 | ||
Qualcomm csra6620 firmware | ||
Qualcomm csra6620 | ||
Qualcomm csra6640 firmware | ||
Qualcomm csra6640 | ||
Qualcomm 9205 Firmware | ||
Qualcomm 9205 | ||
qualcomm qca4004 firmware | ||
qualcomm qca4004 | ||
qualcomm qca4010 firmware | ||
qualcomm qca4010 | ||
qualcomm qca4020 firmware | ||
qualcomm qca4020 | ||
qualcomm qca4024 firmware | ||
qualcomm qca4024 | ||
Qualcomm QCS405 Firmware | ||
Qualcomm QCS405 Firmware | ||
qualcomm wcd9306 firmware | ||
qualcomm wcd9306 | ||
Qualcomm wcd9335 firmware | ||
qualcomm wcd9335 | ||
qualcomm wcn3980 firmware | ||
Qualcomm Wcn3980 | ||
Qualcomm wcn3998 firmware | ||
Qualcomm wcn3998 | ||
Qualcomm wcn3999 firmware | ||
Qualcomm wcn3999 | ||
qualcomm wsa8810 firmware | ||
qualcomm wsa8810 | ||
qualcomm wsa8815 firmware | ||
qualcomm wsa8815 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25674 is a vulnerability related to cryptographic issues in the WLAN during the group key handshake of the WPA/WPA2 protocol in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music.
CVE-2022-25674 affects Qualcomm AR8031 Firmware, Qualcomm CSRA6620 Firmware, Qualcomm CSRA6640 Firmware, Qualcomm MDM9205 Firmware, Qualcomm QCA4004 Firmware, Qualcomm QCA4010 Firmware, Qualcomm QCA4020 Firmware, Qualcomm QCA4024 Firmware, Qualcomm QCS405 Firmware, Qualcomm WCD9306 Firmware, Qualcomm WCD9335 Firmware, Qualcomm WCN3980 Firmware, Qualcomm WCN3998 Firmware, Qualcomm WCN3999 Firmware, Qualcomm WSA8810 Firmware, and Qualcomm WSA8815 Firmware.
The severity of CVE-2022-25674 is critical with a CVSS score of 9.8.
CVE-2022-25674 introduces cryptographic issues in the WLAN group key handshake of the WPA/WPA2 protocol, potentially allowing unauthorized access to the network.
Please refer to the official Qualcomm November 2022 Bulletin for the latest information on fixes and patches for CVE-2022-25674.