CVE-2022-25726: Buffer Over-read in MODEM
Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this information disclosure vulnerability?
The vulnerability ID for this information disclosure vulnerability is CVE-2022-25726.
What is the severity level of CVE-2022-25726?
The severity level of CVE-2022-25726 is high with a severity value of 7.5.
What software is affected by CVE-2022-25726?
The affected software includes Qualcomm Mdm9205 Firmware, Google Android, Qualcomm Mdm9206 Firmware, Qualcomm Mdm9207 Firmware, Qualcomm Wcn685x-1 Firmware, Qualcomm Wcn785x-1 Firmware, Qualcomm Mdm8207 Firmware, Qualcomm Qca4004 Firmware, Qualcomm Qts110 Firmware, Qualcomm Snapdragon Wear 1300 Firmware, Qualcomm Snapdragon X5 Lte Modem Firmware, Qualcomm Ssg2115p Firmware, Qualcomm Ssg2125p Firmware, Qualcomm Sxr1230p Firmware, Qualcomm Sxr2230p Firmware, Qualcomm Wcd9306 Firmware, Qualcomm Wcd9330 Firmware, Qualcomm Wcd9380 Firmware, Qualcomm Wcd9385 Firmware, Qualcomm Wsa8830 Firmware, Qualcomm Wsa8832 Firmware, Qualcomm Wsa8835 Firmware, Qualcomm Wcn685x-5 Firmware, Qualcomm Wcn785x-5 Firmware.
How does this vulnerability result in information disclosure?
This vulnerability in modem data results in information disclosure due to array out-of-bound access while handling the incoming DNS response packet.
Is there a fix available for CVE-2022-25726?
For information on fixes available for CVE-2022-25726, please refer to the referenced link.