First published: Thu Feb 09 2023(Updated: )
Information disclosure in modem due to buffer over-read while processing response from DNS server
Credit: product-security@qualcomm.com product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Google Android | ||
Qualcomm Ar8031 | ||
All of | ||
Qualcomm Csra6620 Firmware | ||
Google Android | ||
All of | ||
Qualcomm Csra6640 Firmware | ||
Google Android | ||
All of | ||
Qualcomm Mdm8207 Firmware | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Qualcomm Mdm9206 Firmware | ||
Qualcomm Mdm9206 | ||
All of | ||
Qualcomm Mdm9207 Firmware | ||
Qualcomm Mdm9207 | ||
All of | ||
Google Android | ||
Qualcomm Mdm9607 | ||
All of | ||
Google Android | ||
Qualcomm Qca4004 | ||
All of | ||
Qualcomm Qca4020 Firmware | ||
Google Android | ||
All of | ||
Qualcomm Qca4024 Firmware | ||
Google Android | ||
All of | ||
Qualcomm Qcs405 Firmware | ||
Qualcomm Qcs405 | ||
All of | ||
Qualcomm Qts110 Firmware | ||
Qualcomm Qts110 | ||
All of | ||
Qualcomm Ssg2115p Firmware | ||
Qualcomm Ssg2115p | ||
All of | ||
Qualcomm Ssg2125p Firmware | ||
Qualcomm Ssg2125p | ||
All of | ||
Qualcomm Sxr1230p Firmware | ||
Qualcomm Sxr1230p | ||
All of | ||
Qualcomm Sxr2230p Firmware | ||
Qualcomm Sxr2230p | ||
All of | ||
Qualcomm Wcd9306 Firmware | ||
Google Android | ||
All of | ||
Google Android | ||
Qualcomm Wcd9330 | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Qualcomm Wcn6855 Firmware | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Qualcomm Wcn7850 Firmware | ||
Google Android | ||
All of | ||
Google Android | ||
Qualcomm Wcn7851 | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Qualcomm Wsa8832 Firmware | ||
Qualcomm Wsa8832 | ||
All of | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Ar8031 | ||
Qualcomm Csra6620 Firmware | ||
Google Android | ||
Qualcomm Csra6640 Firmware | ||
Google Android | ||
Qualcomm Mdm8207 Firmware | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Mdm9206 Firmware | ||
Qualcomm Mdm9206 | ||
Qualcomm Mdm9207 Firmware | ||
Qualcomm Mdm9207 | ||
Google Android | ||
Qualcomm Mdm9607 | ||
Google Android | ||
Qualcomm Qca4004 | ||
Qualcomm Qca4020 Firmware | ||
Google Android | ||
Qualcomm Qca4024 Firmware | ||
Google Android | ||
Qualcomm Qcs405 Firmware | ||
Qualcomm Qcs405 | ||
Qualcomm Qts110 Firmware | ||
Qualcomm Qts110 | ||
Qualcomm Ssg2115p Firmware | ||
Qualcomm Ssg2115p | ||
Qualcomm Ssg2125p Firmware | ||
Qualcomm Ssg2125p | ||
Qualcomm Sxr1230p Firmware | ||
Qualcomm Sxr1230p | ||
Qualcomm Sxr2230p Firmware | ||
Qualcomm Sxr2230p | ||
Qualcomm Wcd9306 Firmware | ||
Google Android | ||
Google Android | ||
Qualcomm Wcd9330 | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Wcn6855 Firmware | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Wcn7850 Firmware | ||
Google Android | ||
Google Android | ||
Qualcomm Wcn7851 | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Wsa8832 Firmware | ||
Qualcomm Wsa8832 | ||
Google Android | ||
Google Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25728 is a vulnerability that allows for information disclosure in a modem when processing a response from a DNS server.
Google Android and some Qualcomm firmware versions are affected by CVE-2022-25728.
CVE-2022-25728 has a severity rating of 7.5 (high).
To fix CVE-2022-25728, it is recommended to apply the security updates provided by Qualcomm and follow the guidance from the advisory.
You can find more information about CVE-2022-25728 in the official Qualcomm Security Bulletin for February 2023.