CVE-2022-25740: Buffer Copy Without Checking Size of Input in MODEM
Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of the iface
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-25740?
CVE-2022-25740 is a memory corruption vulnerability in the modem that occurs due to a buffer overwrite while building an IPv6 multicast address based on the MAC address of the interface.
What software is affected by CVE-2022-25740?
The Qualcomm Mdm8207 Firmware, Qualcomm Mdm9205 Firmware, Qualcomm Mdm9206 Firmware, Qualcomm Mdm9207 Firmware, Qualcomm Qca4004, Qualcomm Qts110 Firmware, Qualcomm Snapdragon Wear 1300 Firmware, and Qualcomm Wcd9330 software are affected.
What is the severity of CVE-2022-25740?
CVE-2022-25740 has a severity rating of 9.8, which is classified as critical.
How can I fix CVE-2022-25740?
To fix CVE-2022-25740, it is recommended to apply the necessary firmware updates provided by Qualcomm.
Where can I find more information about CVE-2022-25740?
You can find more information about CVE-2022-25740 on the Qualcom website in their April 2023 security bulletin.