First published: Thu Feb 09 2023(Updated: )
Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets.
Credit: product-security@qualcomm.com product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm AR8031 | ||
Qualcomm AR8031 Firmware | ||
Qualcomm CSRA6620 | ||
Qualcomm CSRA6620 | ||
Qualcomm csra6640 firmware | ||
Qualcomm csra6640 firmware | ||
Qualcomm MDM8207 | ||
Qualcomm MDM8207 Firmware | ||
Qualcomm 9205 Firmware | ||
Qualcomm 9205 | ||
Qualcomm MDM9206 | ||
Qualcomm MDM9206 firmware | ||
Qualcomm MDM9207 | ||
Qualcomm MDM9207 Firmware | ||
Qualcomm MD9607 Firmware | ||
Qualcomm MDM9607 firmware | ||
qualcomm qca4004 firmware | ||
Qualcomm QCA4004 | ||
Qualcomm QCA4010 Firmware | ||
Qualcomm QCA4010 | ||
Qualcomm QCA4020 Firmware | ||
Qualcomm QCA4020 Firmware | ||
Qualcomm QCA-4024 Firmware | ||
Qualcomm QCA4024 | ||
Qualcomm QCS405 Firmware | ||
Qualcomm QCS405 Firmware | ||
Qualcomm QTS110 | ||
Qualcomm QTS110 | ||
Qualcomm WCD9306 | ||
Qualcomm WCD9306 | ||
Qualcomm WCD9330 | ||
Qualcomm WCD9330 Firmware | ||
Qualcomm WCD9335 Firmware | ||
Qualcomm WCD9335 Firmware | ||
Qualcomm Wcn3980 | ||
qualcomm wcn3980 firmware | ||
Qualcomm WCN3999 Firmware | ||
Qualcomm WCN3999 Firmware | ||
Qualcomm WSA8810 | ||
Qualcomm WSA8810 Firmware | ||
qualcomm wsa8815 firmware | ||
qualcomm wsa8815 firmware | ||
All of | ||
Qualcomm AR8031 | ||
Qualcomm AR8031 Firmware | ||
All of | ||
Qualcomm CSRA6620 | ||
Qualcomm CSRA6620 | ||
All of | ||
Qualcomm csra6640 firmware | ||
Qualcomm csra6640 firmware | ||
All of | ||
Qualcomm MDM8207 | ||
Qualcomm MDM8207 Firmware | ||
All of | ||
Qualcomm 9205 Firmware | ||
Qualcomm 9205 | ||
All of | ||
Qualcomm MDM9206 | ||
Qualcomm MDM9206 firmware | ||
All of | ||
Qualcomm MDM9207 | ||
Qualcomm MDM9207 Firmware | ||
All of | ||
Qualcomm MD9607 Firmware | ||
Qualcomm MDM9607 firmware | ||
All of | ||
qualcomm qca4004 firmware | ||
Qualcomm QCA4004 | ||
All of | ||
Qualcomm QCA4010 Firmware | ||
Qualcomm QCA4010 | ||
All of | ||
Qualcomm QCA4020 Firmware | ||
Qualcomm QCA4020 Firmware | ||
All of | ||
Qualcomm QCA-4024 Firmware | ||
Qualcomm QCA4024 | ||
All of | ||
Qualcomm QCS405 Firmware | ||
Qualcomm QCS405 Firmware | ||
All of | ||
Qualcomm QTS110 | ||
Qualcomm QTS110 | ||
All of | ||
Qualcomm WCD9306 | ||
Qualcomm WCD9306 | ||
All of | ||
Qualcomm WCD9330 | ||
Qualcomm WCD9330 Firmware | ||
All of | ||
Qualcomm WCD9335 Firmware | ||
Qualcomm WCD9335 Firmware | ||
All of | ||
Qualcomm Wcn3980 | ||
qualcomm wcn3980 firmware | ||
All of | ||
Qualcomm WCN3999 Firmware | ||
Qualcomm WCN3999 Firmware | ||
All of | ||
Qualcomm WSA8810 | ||
Qualcomm WSA8810 Firmware | ||
All of | ||
qualcomm wsa8815 firmware | ||
qualcomm wsa8815 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-33229 is an information disclosure vulnerability caused by a buffer over-read in Modem while using a static array to process IPv4 packets.
Google Android with Qualcomm AR8031 firmware and Qualcomm Csra6620, Csra6640, Mdm8207, Mdm9205, Mdm9206, Mdm9207, Mdm9607, Qca4004, Qca4010, Qca4020, Qca4024, Qcs405, Qts110, Wcd9306, Wcd9330, Wcd9335, Wcn3980, Wcn3999, Wsa8810, and Wsa8815 are affected by CVE-2022-33229.
CVE-2022-33229 has a severity rating of 7.5 (high).
CVE-2022-33229 may result in information disclosure due to the buffer over-read vulnerability in Modem.
It is recommended to refer to the official advisory from Qualcomm for information on patches or mitigations for CVE-2022-33229. The link to the advisory can be found in the references section.