First published: Mon Oct 17 2022(Updated: )
Memory corruption in automotive multimedia due to use of out-of-range pointer offset while parsing command request packet with a very large type value. in Snapdragon Auto
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm APQ8064AU | ||
Qualcomm APQ8064 AU Firmware | ||
Qualcomm APQ8096AU Firmware | ||
Qualcomm APQ8096AU Firmware | ||
qualcomm MSM8996AU firmware | ||
Qualcomm MSM8996AU Firmware | ||
Qualcomm QAM8295P | ||
Qualcomm QAM8295P | ||
Qualcomm QCA6564A | ||
Qualcomm QCA6564A Firmware | ||
Qualcomm QCA6564AU Firmware | ||
Qualcomm QCA6564A | ||
Qualcomm QCA6574A Firmware | ||
qualcomm qca6574a firmware | ||
Qualcomm QCA6574 Firmware | ||
Qualcomm QCA6574AU | ||
Qualcomm QCA6584AU Firmware | ||
Qualcomm QCA6584AU firmware | ||
Qualcomm QCA6595AU Firmware | ||
Qualcomm QCA6595AU Firmware | ||
Qualcomm QCA6696 Firmware | ||
Qualcomm QCA6696 Firmware | ||
Qualcomm SA6145P Firmware | ||
Qualcomm SA6145P Firmware | ||
Qualcomm SA6150P Firmware | ||
Qualcomm SA6150P Firmware | ||
Qualcomm SA6155 | ||
Qualcomm SA6155 Firmware | ||
Qualcomm SA6155 | ||
Qualcomm SA6155P | ||
Qualcomm SA8145P | ||
Qualcomm SA8145P Firmware | ||
Qualcomm SA8150P Firmware | ||
Qualcomm SA8150P Firmware | ||
Qualcomm SA8155P Firmware | ||
Qualcomm SA8155 Firmware | ||
Qualcomm SA8155 | ||
Qualcomm SA8155P Firmware | ||
Qualcomm SA8195P | ||
Qualcomm SA8195P Firmware | ||
Qualcomm SA8295P Firmware | ||
Qualcomm SA8295P Firmware | ||
Qualcomm SA8540P | ||
Qualcomm SA8540P Firmware | ||
Qualcomm SA9000P Firmware | ||
Qualcomm SA9000P Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-33210 is a vulnerability in automotive multimedia that leads to memory corruption due to the use of an out-of-range pointer offset while parsing a command request packet with a very large type value.
The affected software includes Qualcomm Apq8064au Firmware, Google Android, Qualcomm Qam8295p Firmware, Qualcomm Qca6564au Firmware, Qualcomm Qca6574au Firmware, Qualcomm Qca6584au, Google Android, Qualcomm Qca6595au, Google Android, Qualcomm Qca6696, Qualcomm Sa6145p Firmware, Qualcomm Sa6150p Firmware, Qualcomm Sa6155p, Qualcomm Sa8145p Firmware, Qualcomm Sa8150p, Qualcomm Sa8155 Firmware, Qualcomm Sa8195p Firmware, Qualcomm Sa8295p Firmware, Qualcomm Sa8540p Firmware, and Qualcomm Sa9000p Firmware.
CVE-2022-33210 has a severity rating of 7.8, which is considered high.
CVE-2022-33210 can lead to memory corruption in automotive multimedia systems, which can potentially allow attackers to execute arbitrary code or cause system crashes.
To address CVE-2022-33210, it is recommended to apply the security update provided by the vendor of the affected software or follow their recommended mitigation steps.