First published: Fri Sep 16 2022(Updated: )
Memory corruption in graphics due to use-after-free while graphics profiling in Snapdragon Connectivity, Snapdragon Mobile
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
Qualcomm Sm8475 | ||
Qualcomm Sm7450 Firmware | ||
Qualcomm Sm7450 | ||
Qualcomm Sm8475 Firmware | ||
Qualcomm Sm8475p Firmware | ||
Qualcomm Sm8475p | ||
Qualcomm Wcd9370 Firmware | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Wcn6855 Firmware | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Wcn7851 | ||
Google Android | ||
Google Android | ||
Qualcomm Wsa8832 Firmware | ||
Qualcomm Wsa8832 | ||
Google Android | ||
Google Android | ||
Google Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25693 is a vulnerability in Snapdragon Connectivity and Snapdragon Mobile that allows memory corruption due to a use-after-free while graphics profiling.
The affected software includes Qualcomm Sm7450 Firmware, Qualcomm Sm8475 Firmware, Qualcomm Sm8475p Firmware, Qualcomm Wcd9370 Firmware, Qualcomm Wcd9375 Firmware, Qualcomm Wcd9380 Firmware, Qualcomm Wcd9385 Firmware, Qualcomm Wcn6750 Firmware, Qualcomm Wcn6855 Firmware, Qualcomm Wcn6856 Firmware, Qualcomm Wcn7851 Firmware, Qualcomm Wsa8830 Firmware, Qualcomm Wsa8832 Firmware, and Qualcomm Wsa8835 Firmware.
The severity of CVE-2022-25693 is high, with a CVSS score of 7.8.
To fix CVE-2022-25693, it is recommended to apply the patches and updates provided by Qualcomm.
You can find more information about CVE-2022-25693 on the Qualcomm Product Security Bulletins page and the Android Security Bulletin for September 2022.