CVE-2022-25706: High severity qualcomm pq8009 firmware vulnerability
Information disclosure in Bluetooth driver due to buffer over-read while reading l2cap length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-25706?
CVE-2022-25706 is classified as a high severity vulnerability due to the potential for information disclosure.
How does CVE-2022-25706 occur?
CVE-2022-25706 occurs due to a buffer over-read while reading the L2CAP length in Bluetooth drivers.
How do I fix CVE-2022-25706?
To fix CVE-2022-25706, update your affected Qualcomm firmware to the latest version provided by Qualcomm or your device manufacturer.
Which devices are affected by CVE-2022-25706?
CVE-2022-25706 affects various Qualcomm chipsets used in devices such as smartphones, automotive systems, and IoT products.
What impact does CVE-2022-25706 have on users?
CVE-2022-25706 can lead to unauthorized access to sensitive information, potentially compromising user privacy.