First published: Mon Feb 06 2023(Updated: )
Information disclosure in Trusted Execution Environment due to buffer over-read while processing metadata verification requests.
Credit: product-security@qualcomm.com product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
Google Android | ||
Qualcomm Sm8475 | ||
Qualcomm Ssg2115p Firmware | ||
Qualcomm Ssg2115p | ||
Qualcomm Ssg2125p Firmware | ||
Qualcomm Ssg2125p | ||
Qualcomm Sxr1230p Firmware | ||
Qualcomm Sxr1230p | ||
Qualcomm Sxr2230p Firmware | ||
Qualcomm Sxr2230p | ||
Qualcomm Wcd9380 Firmware | ||
Qualcomm Wcd9380 | ||
Qualcomm Wcd9385 Firmware | ||
Qualcomm Wcd9385 | ||
Qualcomm Wcn6855 Firmware | ||
Qualcomm Wcn6855 | ||
Qualcomm Wcn6856 Firmware | ||
Qualcomm Wcn6856 | ||
Qualcomm WCN7850 | ||
Qualcomm WCN7850 | ||
Qualcomm Wcn7851 Firmware | ||
Qualcomm Wcn7851 | ||
Qualcomm Wsa8830 Firmware | ||
Qualcomm Wsa8830 | ||
Qualcomm Wsa8832 Firmware | ||
Qualcomm Wsa8832 | ||
Qualcomm Wsa8835 Firmware | ||
Qualcomm Wsa8835 | ||
All of | ||
Google Android | ||
Qualcomm Sm8475 | ||
All of | ||
Qualcomm Ssg2115p Firmware | ||
Qualcomm Ssg2115p | ||
All of | ||
Qualcomm Ssg2125p Firmware | ||
Qualcomm Ssg2125p | ||
All of | ||
Qualcomm Sxr1230p Firmware | ||
Qualcomm Sxr1230p | ||
All of | ||
Qualcomm Sxr2230p Firmware | ||
Qualcomm Sxr2230p | ||
All of | ||
Qualcomm Wcd9380 Firmware | ||
Qualcomm Wcd9380 | ||
All of | ||
Qualcomm Wcd9385 Firmware | ||
Qualcomm Wcd9385 | ||
All of | ||
Qualcomm Wcn6855 Firmware | ||
Qualcomm Wcn6855 | ||
All of | ||
Qualcomm Wcn6856 Firmware | ||
Qualcomm Wcn6856 | ||
All of | ||
Qualcomm WCN7850 | ||
Qualcomm WCN7850 | ||
All of | ||
Qualcomm Wcn7851 Firmware | ||
Qualcomm Wcn7851 | ||
All of | ||
Qualcomm Wsa8830 Firmware | ||
Qualcomm Wsa8830 | ||
All of | ||
Qualcomm Wsa8832 Firmware | ||
Qualcomm Wsa8832 | ||
All of | ||
Qualcomm Wsa8835 Firmware | ||
Qualcomm Wsa8835 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-33221 is a vulnerability in Trusted Execution Environment (TEE) that allows information disclosure due to buffer over-read while processing metadata verification requests.
CVE-2022-33221 affects Google Android devices and Qualcomm firmware versions.
The severity of CVE-2022-33221 is high with a CVSS score of 5.5.
To fix CVE-2022-33221, apply the relevant security patches provided by Google and Qualcomm.
You can find more information about CVE-2022-33221 on the official Android security bulletin and Qualcomm's product security bulletins.