First published: Tue Nov 15 2022(Updated: )
Denial of service in modem due to infinite loop while parsing IGMPv2 packet from server in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
Qualcomm Ar8031 | ||
Qualcomm Csra6620 Firmware | ||
Google Android | ||
Qualcomm Csra6640 Firmware | ||
Google Android | ||
Qualcomm Mdm8207 Firmware | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Mdm9206 Firmware | ||
Qualcomm Mdm9206 | ||
Qualcomm Mdm9207 Firmware | ||
Qualcomm Mdm9207 | ||
Google Android | ||
Qualcomm Mdm9607 | ||
Google Android | ||
Qualcomm Qca4004 | ||
Qualcomm Qca4010 Firmware | ||
Qualcomm Qca4010 | ||
Qualcomm Qca4020 Firmware | ||
Google Android | ||
Qualcomm Qca4024 Firmware | ||
Google Android | ||
Qualcomm Qcs405 Firmware | ||
Qualcomm Qcs405 | ||
Qualcomm Wcd9306 Firmware | ||
Google Android | ||
Google Android | ||
Qualcomm Wcd9330 | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25742 is a vulnerability that allows for a denial of service attack in the modem due to an infinite loop while parsing an IGMPv2 packet from a server in Snapdragon Consumer IOT, Snapdragon Industrial IOT, and Snapdragon Voice & Music.
Google Android, Qualcomm Csra6620 Firmware, Qualcomm Csra6640 Firmware, Qualcomm Mdm8207 Firmware, Google Android, Qualcomm Mdm9205 Firmware, Qualcomm Mdm9206 Firmware, Qualcomm Mdm9207 Firmware, Qualcomm Mdm9607 Firmware, Qualcomm Qca4004 Firmware, Qualcomm Qca4010 Firmware, Qualcomm Qca4020 Firmware, Qualcomm Qca4024 Firmware, Qualcomm Qcs405 Firmware, Qualcomm Wcd9306 Firmware, Google Android, Qualcomm Wcd9330 Firmware, Google Android, Qualcomm Wcd9335 Firmware, Google Android, Qualcomm Wcn3980 Firmware, Google Android, Qualcomm Wcn3998 Firmware, and Google Android.
The severity of CVE-2022-25742 is high, with a severity value of 7.5.
To fix CVE-2022-25742, it is recommended to install the necessary patches and updates provided by Qualcomm. Please refer to the official Qualcomm Product Security Bulletins for more information.
More information about CVE-2022-25742 can be found in the official Qualcomm Product Security Bulletins available on the Qualcomm website.