First published: Tue Apr 04 2023(Updated: )
Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call
Credit: product-security@qualcomm.com product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
Google Android | ||
Qualcomm Mdm9206 Firmware | ||
Qualcomm Mdm9206 | ||
Qualcomm Mdm9207 Firmware | ||
Qualcomm Mdm9207 | ||
Qualcomm Mdm8207 Firmware | ||
Google Android | ||
Google Android | ||
Qualcomm Qca4004 | ||
Qualcomm Qts110 Firmware | ||
Qualcomm Qts110 | ||
Qualcomm Snapdragon Ar2 Gen 1 Platform Firmware | ||
Qualcomm Snapdragon Ar2 Gen 1 Platform | ||
Qualcomm Snapdragon X5 Lte Modem Firmware | ||
Qualcomm Snapdragon X5 Lte Modem | ||
Qualcomm Ssg2115p Firmware | ||
Qualcomm Ssg2115p | ||
Qualcomm Ssg2125p Firmware | ||
Qualcomm Ssg2125p | ||
Qualcomm Sxr1230p Firmware | ||
Qualcomm Sxr1230p | ||
Qualcomm Sxr2230p Firmware | ||
Qualcomm Sxr2230p | ||
Qualcomm Wcd9306 Firmware | ||
Google Android | ||
Google Android | ||
Qualcomm Wcd9330 | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Wsa8832 Firmware | ||
Qualcomm Wsa8832 | ||
Google Android | ||
Google Android | ||
Qualcomm Wcn685x-1 Firmware | ||
Qualcomm Wcn685x-1 | ||
Qualcomm Wcn785x-1 Firmware | ||
Qualcomm Wcn785x-1 | ||
Qualcomm Snapdragon Wear 1300 Firmware | ||
Qualcomm Snapdragon Wear 1300 | ||
Qualcomm Wcn685x-5 Firmware | ||
Qualcomm Wcn685x-5 | ||
Qualcomm Wcn785x-5 Firmware | ||
Qualcomm Wcn785x-5 | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Qualcomm Mdm9206 Firmware | ||
Qualcomm Mdm9206 | ||
All of | ||
Qualcomm Mdm9207 Firmware | ||
Qualcomm Mdm9207 | ||
All of | ||
Qualcomm Mdm8207 Firmware | ||
Google Android | ||
All of | ||
Google Android | ||
Qualcomm Qca4004 | ||
All of | ||
Qualcomm Qts110 Firmware | ||
Qualcomm Qts110 | ||
All of | ||
Qualcomm Snapdragon Ar2 Gen 1 Platform Firmware | ||
Qualcomm Snapdragon Ar2 Gen 1 Platform | ||
All of | ||
Qualcomm Snapdragon X5 Lte Modem Firmware | ||
Qualcomm Snapdragon X5 Lte Modem | ||
All of | ||
Qualcomm Ssg2115p Firmware | ||
Qualcomm Ssg2115p | ||
All of | ||
Qualcomm Ssg2125p Firmware | ||
Qualcomm Ssg2125p | ||
All of | ||
Qualcomm Sxr1230p Firmware | ||
Qualcomm Sxr1230p | ||
All of | ||
Qualcomm Sxr2230p Firmware | ||
Qualcomm Sxr2230p | ||
All of | ||
Qualcomm Wcd9306 Firmware | ||
Google Android | ||
All of | ||
Google Android | ||
Qualcomm Wcd9330 | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Qualcomm Wsa8832 Firmware | ||
Qualcomm Wsa8832 | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Qualcomm Wcn685x-1 Firmware | ||
Qualcomm Wcn685x-1 | ||
All of | ||
Qualcomm Wcn785x-1 Firmware | ||
Qualcomm Wcn785x-1 | ||
All of | ||
Qualcomm Snapdragon Wear 1100 Firmware | ||
Qualcomm Snapdragon Wear 1100 | ||
All of | ||
Qualcomm Snapdragon Wear 1200 Firmware | ||
Qualcomm Snapdragon Wear 1200 | ||
All of | ||
Qualcomm Snapdragon Wear 1300 Firmware | ||
Qualcomm Snapdragon Wear 1300 | ||
All of | ||
Qualcomm Wcn685x-5 Firmware | ||
Qualcomm Wcn685x-5 | ||
All of | ||
Qualcomm Wcn785x-5 Firmware | ||
Qualcomm Wcn785x-5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25739 is a vulnerability that allows for a denial of service in a modem due to a missing null check while processing the IPv6 packet received during an ECM call.
The affected software includes Google Android, Qualcomm Mdm9205 Firmware, Qualcomm Mdm9206 Firmware, Qualcomm Mdm9207 Firmware, Qualcomm Mdm8207 Firmware, Qualcomm Qca4004, Qualcomm Qts110 Firmware, Qualcomm Snapdragon Ar2 Gen 1 Platform Firmware, Qualcomm Snapdragon X5 Lte Modem Firmware, Qualcomm Ssg2115p Firmware, Qualcomm Ssg2125p Firmware, Qualcomm Sxr1230p Firmware, Qualcomm Sxr2230p Firmware, Qualcomm Wcd9306 Firmware, Qualcomm Wcd9330, Qualcomm Wcd9380, Qualcomm Wcd9385, Qualcomm Wsa8830, Qualcomm Wsa8832 Firmware, Qualcomm Wsa8835, Qualcomm Wcn685x-1 Firmware, Qualcomm Wcn685x-5 Firmware, Qualcomm Wcn785x-1 Firmware, Qualcomm Wcn785x-5 Firmware, and Qualcomm Snapdragon Wear 1300 Firmware.
The severity of CVE-2022-25739 is high with a CVSSv3 score of 7.5.
To fix CVE-2022-25739, it is recommended to apply the latest security updates provided by the respective software vendors.
You can find more information about CVE-2022-25739 on the Qualcomm product security bulletin for April 2023.