CVE-2022-25730: Buffer Over-read in MODEM
Information disclosure in modem due to improper check of IP type while processing DNS server query
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-25730?
CVE-2022-25730 is a vulnerability that allows information disclosure in a modem due to an improper check of IP type while processing a DNS server query.
What software is affected by CVE-2022-25730?
The Qualcomm Mdm8207 Firmware, Qualcomm Mdm9205 Firmware, Qualcomm Mdm9206 Firmware, Qualcomm Mdm9207 Firmware, Qualcomm Qca4010 Firmware, Qualcomm Qts110 Firmware, Qualcomm Snapdragon Ar2 Gen 1 Platform Firmware, Qualcomm Snapdragon Wear 1300 Firmware, Qualcomm Snapdragon X5 Lte Modem Firmware, Qualcomm Ssg2115p Firmware, Qualcomm Ssg2125p Firmware, Qualcomm Sxr1230p Firmware, Qualcomm Sxr2230p Firmware, Qualcomm Wcd9306 Firmware, Qualcomm Wcn685x-1 Firmware, Qualcomm Wcn685x-5 Firmware, Qualcomm Wcn785x-1 Firmware, Qualcomm Wcn785x-5 Firmware, Qualcomm Wsa8832 Firmware, and Google Android are affected by CVE-2022-25730.
How severe is CVE-2022-25730?
CVE-2022-25730 has a severity score of 7.5, which is considered high.
How can I fix CVE-2022-25730?
To fix CVE-2022-25730, it is recommended to apply the security patches provided by Qualcomm. Please refer to the official Qualcomm website for more information.
Is the Google Android software vulnerable to CVE-2022-25730?
No, the Google Android software is not vulnerable to CVE-2022-25730.