First published: Mon Feb 06 2023(Updated: )
Information disclosure in Trusted Execution Environment due to buffer over-read while processing metadata verification requests.
Credit: product-security@qualcomm.com product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
Qualcomm Sm8475 | ||
Qualcomm Ssg2115p Firmware | ||
Qualcomm Ssg2115p | ||
Qualcomm Ssg2125p Firmware | ||
Qualcomm Ssg2125p | ||
Qualcomm Sxr1230p Firmware | ||
Qualcomm Sxr1230p | ||
Qualcomm Sxr2230p Firmware | ||
Qualcomm Sxr2230p | ||
Google Android | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Wcn6855 Firmware | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Wcn7850 Firmware | ||
Google Android | ||
Google Android | ||
Qualcomm Wcn7851 | ||
Google Android | ||
Google Android | ||
Qualcomm Wsa8832 Firmware | ||
Qualcomm Wsa8832 | ||
Google Android | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Qualcomm Sm8475 | ||
All of | ||
Qualcomm Ssg2115p Firmware | ||
Qualcomm Ssg2115p | ||
All of | ||
Qualcomm Ssg2125p Firmware | ||
Qualcomm Ssg2125p | ||
All of | ||
Qualcomm Sxr1230p Firmware | ||
Qualcomm Sxr1230p | ||
All of | ||
Qualcomm Sxr2230p Firmware | ||
Qualcomm Sxr2230p | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Qualcomm Wcn6855 Firmware | ||
Google Android | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Qualcomm Wcn7850 Firmware | ||
Google Android | ||
All of | ||
Google Android | ||
Qualcomm Wcn7851 | ||
All of | ||
Google Android | ||
Google Android | ||
All of | ||
Qualcomm Wsa8832 Firmware | ||
Qualcomm Wsa8832 | ||
All of | ||
Google Android | ||
Google Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-33221 is a vulnerability in Trusted Execution Environment (TEE) that allows information disclosure due to buffer over-read while processing metadata verification requests.
CVE-2022-33221 affects Google Android devices and Qualcomm firmware versions.
The severity of CVE-2022-33221 is high with a CVSS score of 5.5.
To fix CVE-2022-33221, apply the relevant security patches provided by Google and Qualcomm.
You can find more information about CVE-2022-33221 on the official Android security bulletin and Qualcomm's product security bulletins.