CVE-2022-33230: Buffer copy without checking the size of input in FM Host
Published Jun 6, 2023
·Updated
Memory corruption in FM Host due to buffer copy without checking the size of input in FM Host
Affected Software
176 affected components
All of the following
Qualcomm Aqt1000
Qualcomm Aqt1000 Firmware
All of the following
Qualcomm Wcn3991
Qualcomm Wcn3991 Firmware
All of the following
Qualcomm Wcn3998
Qualcomm Wcn3998 Firmware
All of the following
Qualcomm Qca6420
Qualcomm Qca6420 Firmware
All of the following
Qualcomm Qca6430
Qualcomm Qca6430 Firmware
All of the following
Qualcomm Qca6554a
Qualcomm Qca6554a Firmware
All of the following
Qualcomm Qca6564au
Qualcomm Qca6564au Firmware
All of the following
Qualcomm QCA6574
Qualcomm Qca6574 Firmware
All of the following
Qualcomm Qca6574a Firmware
Qualcomm Qca6574a
All of the following
Qualcomm Qca6574au Firmware
Qualcomm QCA6574AU
All of the following
Qualcomm Qca6584au Firmware
Qualcomm QCA6584AU
All of the following
Qualcomm Qca6595 Firmware
Qualcomm Qca6595
All of the following
Qualcomm Qca6595au Firmware
Qualcomm Qca6595au
All of the following
Qualcomm Qca6696 Firmware
Qualcomm Qca6696
All of the following
Qualcomm Sa6145p Firmware
Qualcomm Sa6145p
All of the following
Qualcomm Sa6150p Firmware
Qualcomm Sa6150p
All of the following
Qualcomm Sa6155p Firmware
Qualcomm Sa6155p
All of the following
Qualcomm Sa8145p Firmware
Qualcomm Sa8145p
All of the following
Qualcomm Sa8150p Firmware
Qualcomm Sa8150p
All of the following
Qualcomm Sa8155p Firmware
Qualcomm Sa8155p
All of the following
Qualcomm Sa8195p Firmware
Qualcomm Sa8195p
All of the following
Qualcomm Sd855 Firmware
Qualcomm Sd855
All of the following
Qualcomm Sm4375 Firmware
Qualcomm Sm4375
All of the following
Qualcomm Sm4350 Firmware
Qualcomm Sm4350
All of the following
Qualcomm Sm4350-ac Firmware
Qualcomm Sm4350-ac
All of the following
Qualcomm Sm6375 Firmware
Qualcomm Sm6375
All of the following
Qualcomm Sm8150 Firmware
Qualcomm SM8150
All of the following
Qualcomm Snapdragon W5\+ Gen 1 Wearable Platform Firmware
Qualcomm Snapdragon W5\+ Gen 1 Wearable Platform
All of the following
Qualcomm Snapdragon Wear 4100\+ Platform Firmware
Qualcomm Snapdragon Wear 4100\+ Platform
All of the following
Qualcomm Sw5100 Firmware
Qualcomm Sw5100
All of the following
Qualcomm Sw5100p Firmware
Qualcomm Sw5100p
All of the following
Qualcomm Wcd9341 Firmware
Qualcomm Wcd9341
All of the following
Qualcomm Wcd9370 Firmware
Qualcomm Wcd9370
All of the following
Qualcomm Wcd9375 Firmware
Qualcomm Wcd9375
All of the following
Qualcomm Wcd9385 Firmware
Qualcomm Wcd9385
All of the following
Qualcomm Wcn3610 Firmware
Qualcomm Wcn3610
All of the following
Qualcomm Wcn3660b Firmware
Qualcomm Wcn3660b
All of the following
Qualcomm Wcn3680b Firmware
Qualcomm Wcn3680b
All of the following
Qualcomm Wcn3980 Firmware
Qualcomm Wcn3980
All of the following
Qualcomm Wcn3988 Firmware
Qualcomm Wcn3988
All of the following
Qualcomm Wsa8810 Firmware
Qualcomm Wsa8810
All of the following
Qualcomm Wsa8815 Firmware
Qualcomm Wsa8815
All of the following
Qualcomm Wsa8830 Firmware
Qualcomm Wsa8830
All of the following
Qualcomm Wsa8835 Firmware
Qualcomm Wsa8835
Qualcomm Aqt1000 Firmware
Qualcomm Aqt1000
Qualcomm Wcn3991 Firmware
Qualcomm Wcn3991
Qualcomm Wcn3998 Firmware
Qualcomm Wcn3998
Qualcomm Qca6420 Firmware
Qualcomm Qca6420
Qualcomm Qca6430 Firmware
Qualcomm Qca6430
Qualcomm Qca6554a Firmware
Qualcomm Qca6554a
Qualcomm Qca6564au Firmware
Qualcomm Qca6564au
Qualcomm Qca6574 Firmware
Qualcomm QCA6574
Qualcomm Qca6574a Firmware
Qualcomm Qca6574a
Qualcomm Qca6574au Firmware
Qualcomm QCA6574AU
Qualcomm Qca6584au Firmware
Qualcomm QCA6584AU
Qualcomm Qca6595 Firmware
Qualcomm Qca6595
Qualcomm Qca6595au Firmware
Qualcomm Qca6595au
Qualcomm Qca6696 Firmware
Qualcomm Qca6696
Qualcomm Sa6145p Firmware
Qualcomm Sa6145p
Qualcomm Sa6150p Firmware
Qualcomm Sa6150p
Qualcomm Sa6155p Firmware
Qualcomm Sa6155p
Qualcomm Sa8145p Firmware
Qualcomm Sa8145p
Qualcomm Sa8150p Firmware
Qualcomm Sa8150p
Qualcomm Sa8155p Firmware
Qualcomm Sa8155p
Qualcomm Sa8195p Firmware
Qualcomm Sa8195p
Qualcomm Sd855 Firmware
Qualcomm Sd855
Qualcomm Sm4375 Firmware
Qualcomm Sm4375
Qualcomm Sm4350 Firmware
Qualcomm Sm4350
Qualcomm Sm4350-ac Firmware
Qualcomm Sm4350-ac
Qualcomm Sm6375 Firmware
Qualcomm Sm6375
Qualcomm Sm8150 Firmware
Qualcomm SM8150
Qualcomm Snapdragon W5\+ Gen 1 Wearable Platform Firmware
Qualcomm Snapdragon W5\+ Gen 1 Wearable Platform
Qualcomm Snapdragon Wear 4100\+ Platform Firmware
Qualcomm Snapdragon Wear 4100\+ Platform
Qualcomm Sw5100 Firmware
Qualcomm Sw5100
Qualcomm Sw5100p Firmware
Qualcomm Sw5100p
Qualcomm Wcd9341 Firmware
Qualcomm Wcd9341
Qualcomm Wcd9370 Firmware
Qualcomm Wcd9370
Qualcomm Wcd9375 Firmware
Qualcomm Wcd9375
Qualcomm Wcd9385 Firmware
Qualcomm Wcd9385
Qualcomm Wcn3610 Firmware
Qualcomm Wcn3610
Qualcomm Wcn3660b Firmware
Qualcomm Wcn3660b
Qualcomm Wcn3680b Firmware
Qualcomm Wcn3680b
Qualcomm Wcn3980 Firmware
Qualcomm Wcn3980
Qualcomm Wcn3988 Firmware
Qualcomm Wcn3988
Qualcomm Wsa8810 Firmware
Qualcomm Wsa8810
Qualcomm Wsa8815 Firmware
Qualcomm Wsa8815
Qualcomm Wsa8830 Firmware
Qualcomm Wsa8830
Qualcomm Wsa8835 Firmware
Qualcomm Wsa8835
Event History
Jun 6, 2023
CVE Published
via MITRE·07:38 AM
Data Sourced
via MITRE·07:38 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-33230?
CVE-2022-33230 is classified as a high severity vulnerability due to potential memory corruption.
2
How do I fix CVE-2022-33230?
To fix CVE-2022-33230, please update to the latest firmware version provided by Qualcomm for affected products.
3
What systems are affected by CVE-2022-33230?
CVE-2022-33230 affects various Qualcomm firmware including the aqt1000, wcn3991, and qca series firmware.
4
What kind of vulnerability is CVE-2022-33230?
CVE-2022-33230 is a memory corruption vulnerability that arises from improper buffer handling in the FM Host.
5
Is there a known exploit for CVE-2022-33230?
As of now, there are no publicly known exploits for CVE-2022-33230, but it could be leveraged by attackers.