CVE-2022-33226: Buffer copy without checking the size of input in Core

Published Jun 6, 2023
·
Updated

Memory corruption due to buffer copy without checking the size of input in Core while processing ioctl commands from diag client applications.

Affected Software

132 affected components
All of the following
Qualcomm Aqt1000 Firmware
Qualcomm Aqt1000
All of the following
Qualcomm Wcn3991 Firmware
Qualcomm Wcn3991
All of the following
Qualcomm Wcn3998 Firmware
Qualcomm Wcn3998
All of the following
Qualcomm Wcn685x-5 Firmware
Qualcomm Wcn685x-5
All of the following
Qualcomm Wcn685x-1 Firmware
Qualcomm Wcn685x-1
All of the following
Qualcomm Wcn785x-1 Firmware
Qualcomm Wcn785x-1
All of the following
Qualcomm Wcn785x-5 Firmware
Qualcomm Wcn785x-5
All of the following
Qualcomm Qam8255p Firmware
Qualcomm Qam8255p
All of the following
Qualcomm Qca6420 Firmware
Qualcomm Qca6420
All of the following
Qualcomm Qca6430 Firmware
Qualcomm Qca6430
All of the following
Qualcomm Qca6574au Firmware
Qualcomm QCA6574AU
All of the following
Qualcomm Qca6595au Firmware
Qualcomm Qca6595au
All of the following
Qualcomm Qca6698aq Firmware
Qualcomm Qca6698aq
All of the following
Qualcomm Qca6797aq Firmware
Qualcomm Qca6797aq
All of the following
Qualcomm Sa8255p Firmware
Qualcomm Sa8255p
All of the following
Qualcomm Sd855 Firmware
Qualcomm Sd855
All of the following
Qualcomm Sm8450 Firmware
Qualcomm Sm8450
All of the following
Qualcomm Sm8150 Firmware
Qualcomm SM8150
All of the following
Qualcomm Sm8150-ac Firmware
Qualcomm Sm8150-ac
All of the following
Qualcomm Sm8350 Firmware
Qualcomm Sm8350
All of the following
Qualcomm Sm8350-ac Firmware
Qualcomm Sm8350-ac
All of the following
Qualcomm Snapdragon Wear 4100\+ Platform Firmware
Qualcomm Snapdragon Wear 4100\+ Platform
All of the following
Qualcomm Wcd9341 Firmware
Qualcomm Wcd9341
All of the following
Qualcomm Wcd9380 Firmware
Qualcomm Wcd9380
All of the following
Qualcomm Wcd9385 Firmware
Qualcomm Wcd9385
All of the following
Qualcomm Wcn3610 Firmware
Qualcomm Wcn3610
All of the following
Qualcomm Wcn3660b Firmware
Qualcomm Wcn3660b
All of the following
Qualcomm Wcn3680b Firmware
Qualcomm Wcn3680b
All of the following
Qualcomm Wcn3980 Firmware
Qualcomm Wcn3980
All of the following
Qualcomm Wsa8810 Firmware
Qualcomm Wsa8810
All of the following
Qualcomm Wsa8815 Firmware
Qualcomm Wsa8815
All of the following
Qualcomm Wsa8830 Firmware
Qualcomm Wsa8830
All of the following
Qualcomm Wsa8835 Firmware
Qualcomm Wsa8835
Qualcomm Aqt1000 Firmware
Qualcomm Aqt1000
Qualcomm Wcn3991 Firmware
Qualcomm Wcn3991
Qualcomm Wcn3998 Firmware
Qualcomm Wcn3998
Qualcomm Wcn685x-5 Firmware
Qualcomm Wcn685x-5
Qualcomm Wcn685x-1 Firmware
Qualcomm Wcn685x-1
Qualcomm Wcn785x-1 Firmware
Qualcomm Wcn785x-1
Qualcomm Wcn785x-5 Firmware
Qualcomm Wcn785x-5
Qualcomm Qam8255p Firmware
Qualcomm Qam8255p
Qualcomm Qca6420 Firmware
Qualcomm Qca6420
Qualcomm Qca6430 Firmware
Qualcomm Qca6430
Qualcomm Qca6574au Firmware
Qualcomm QCA6574AU
Qualcomm Qca6595au Firmware
Qualcomm Qca6595au
Qualcomm Qca6698aq Firmware
Qualcomm Qca6698aq
Qualcomm Qca6797aq Firmware
Qualcomm Qca6797aq
Qualcomm Sa8255p Firmware
Qualcomm Sa8255p
Qualcomm Sd855 Firmware
Qualcomm Sd855
Qualcomm Sm8450 Firmware
Qualcomm Sm8450
Qualcomm Sm8150 Firmware
Qualcomm SM8150
Qualcomm Sm8150-ac Firmware
Qualcomm Sm8150-ac
Qualcomm Sm8350 Firmware
Qualcomm Sm8350
Qualcomm Sm8350-ac Firmware
Qualcomm Sm8350-ac
Qualcomm Snapdragon Wear 4100\+ Platform Firmware
Qualcomm Snapdragon Wear 4100\+ Platform
Qualcomm Wcd9341 Firmware
Qualcomm Wcd9341
Qualcomm Wcd9380 Firmware
Qualcomm Wcd9380
Qualcomm Wcd9385 Firmware
Qualcomm Wcd9385
Qualcomm Wcn3610 Firmware
Qualcomm Wcn3610
Qualcomm Wcn3660b Firmware
Qualcomm Wcn3660b
Qualcomm Wcn3680b Firmware
Qualcomm Wcn3680b
Qualcomm Wcn3980 Firmware
Qualcomm Wcn3980
Qualcomm Wsa8810 Firmware
Qualcomm Wsa8810
Qualcomm Wsa8815 Firmware
Qualcomm Wsa8815
Qualcomm Wsa8830 Firmware
Qualcomm Wsa8830
Qualcomm Wsa8835 Firmware
Qualcomm Wsa8835

Event History

Jun 6, 2023
CVE Published
via MITRE·07:38 AM
Data Sourced
via MITRE·07:38 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2022-33226?

The severity of CVE-2022-33226 is high with a CVSS score of 7.8.

2

How does CVE-2022-33226 affect Android devices?

CVE-2022-33226 affects Android devices running Qualcomm AQ Series, WCN Series, WCD Series, QAM Series, QCA Series, QCA64 Series, QCA65 Series, QCA67 Series, QCA67 Series, QCA67 Series, QCA69 Series, QSA Series, SD Series, SM Series, Wear 4100+ Platform, and WSA Series.

3

What is the vulnerability description of CVE-2022-33226?

CVE-2022-33226 is a memory corruption vulnerability in the Core component of Android, which occurs due to a buffer copy without checking the size of the input when processing ioctl commands from diag client applications.

4

How can I fix CVE-2022-33226?

To fix CVE-2022-33226, it is recommended to apply the security patch provided by Qualcomm.

5

Where can I find more information about CVE-2022-33226?

You can find more information about CVE-2022-33226 on the official Qualcomm Product Security Bulletin for June 2023.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203