First published: Mon Oct 17 2022(Updated: )
Memory corruption in automotive multimedia due to use of out-of-range pointer offset while parsing command request packet with a very large type value. in Snapdragon Auto
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm Apq8064au Firmware | ||
Qualcomm Apq8064au | ||
Google Android | ||
Google Android | ||
Qualcomm Msm8996au Firmware | ||
Qualcomm Msm8996au | ||
Qualcomm Qam8295p Firmware | ||
Qualcomm Qam8295p | ||
Google Android | ||
Google Android | ||
Qualcomm Qca6564au Firmware | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Qca6574au | ||
Google Android | ||
Qualcomm Qca6584au | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Qca6696 | ||
Google Android | ||
Qualcomm Sa6145p | ||
Qualcomm Sa6150p Firmware | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Sa6155p | ||
Qualcomm Sa8145p Firmware | ||
Qualcomm Sa8145p | ||
Google Android | ||
Qualcomm Sa8150p | ||
Qualcomm Sa8155 Firmware | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Sa8195p Firmware | ||
Google Android | ||
Qualcomm Sa8295p Firmware | ||
Qualcomm Sa8295p | ||
Qualcomm Sa8540p Firmware | ||
Qualcomm Sa8540p | ||
Qualcomm Sa9000p Firmware | ||
Qualcomm Sa9000p |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-33210 is a vulnerability in automotive multimedia that leads to memory corruption due to the use of an out-of-range pointer offset while parsing a command request packet with a very large type value.
The affected software includes Qualcomm Apq8064au Firmware, Google Android, Qualcomm Qam8295p Firmware, Qualcomm Qca6564au Firmware, Qualcomm Qca6574au Firmware, Qualcomm Qca6584au, Google Android, Qualcomm Qca6595au, Google Android, Qualcomm Qca6696, Qualcomm Sa6145p Firmware, Qualcomm Sa6150p Firmware, Qualcomm Sa6155p, Qualcomm Sa8145p Firmware, Qualcomm Sa8150p, Qualcomm Sa8155 Firmware, Qualcomm Sa8195p Firmware, Qualcomm Sa8295p Firmware, Qualcomm Sa8540p Firmware, and Qualcomm Sa9000p Firmware.
CVE-2022-33210 has a severity rating of 7.8, which is considered high.
CVE-2022-33210 can lead to memory corruption in automotive multimedia systems, which can potentially allow attackers to execute arbitrary code or cause system crashes.
To address CVE-2022-33210, it is recommended to apply the security update provided by the vendor of the affected software or follow their recommended mitigation steps.