CVE-2022-33292: Use after free in Qualcomm IPC
Published May 2, 2023
·Updated
Memory corruption in Qualcomm IPC due to use after free while receiving the incoming packet and reposting it.
Affected Software
33 affected components
Google Android
All of the following
QUALCOMM Sg4150p Firmware
QUALCOMM Sg4150p
All of the following
QUALCOMM Sm6225 Firmware
QUALCOMM Sm6225
All of the following
QUALCOMM Sm6225-ad Firmware
QUALCOMM Sm6225-ad
All of the following
Qualcomm Wcd9370 Firmware
Qualcomm Wcd9370
All of the following
Qualcomm Wcd9375 Firmware
Qualcomm Wcd9375
All of the following
Qualcomm Wcn3950 Firmware
Qualcomm Wcn3950
All of the following
Qualcomm Wcn3988 Firmware
Qualcomm Wcn3988
All of the following
Qualcomm Wsa8810 Firmware
Qualcomm Wsa8810
QUALCOMM Sg4150p Firmware
QUALCOMM Sg4150p
QUALCOMM Sm6225 Firmware
QUALCOMM Sm6225
QUALCOMM Sm6225-ad Firmware
QUALCOMM Sm6225-ad
Qualcomm Wcd9370 Firmware
Qualcomm Wcd9370
Qualcomm Wcd9375 Firmware
Qualcomm Wcd9375
Qualcomm Wcn3950 Firmware
Qualcomm Wcn3950
Qualcomm Wcn3988 Firmware
Qualcomm Wcn3988
Qualcomm Wsa8810 Firmware
Qualcomm Wsa8810
Remediation
Event History
May 2, 2023
CVE Published
via MITRE·05:08 AM
Data Sourced
via MITRE·05:08 AM
DescriptionSeverityWeakness
Data Sourced
06:15 AM
Description
Data Sourced
via NVD·06:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-33292?
CVE-2022-33292 is a vulnerability that allows for memory corruption in Qualcomm IPC due to use after free while receiving the incoming packet and reposting it.
2
How does CVE-2022-33292 affect Qualcomm Sg4150p Firmware?
CVE-2022-33292 affects Qualcomm Sg4150p Firmware by causing memory corruption due to use after free while receiving and reposting incoming packets.
3
Is Qualcomm Sg4150p vulnerable to CVE-2022-33292?
No, Qualcomm Sg4150p is not vulnerable to CVE-2022-33292.
4
How severe is CVE-2022-33292?
CVE-2022-33292 has a severity rating of 7.8 (high).
5
How can I fix CVE-2022-33292?
To fix CVE-2022-33292, apply the patches provided by Qualcomm or update to a non-vulnerable version.