CVE-2022-33294: NULL pointer dereference in Modem
Published Apr 4, 2023
·Updated
Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registration/update/bootstrap request message.
Affected Software
48 affected components
All of the following
QUALCOMM Mdm8207 Firmware
QUALCOMM Mdm8207
All of the following
QUALCOMM Mdm9205 Firmware
QUALCOMM MDM9205
All of the following
QUALCOMM Mdm9206 Firmware
QUALCOMM MDM9206
All of the following
QUALCOMM Mdm9207 Firmware
QUALCOMM Mdm9207
All of the following
QUALCOMM Qca4004 Firmware
QUALCOMM Qca4004
All of the following
QUALCOMM Qts110 Firmware
QUALCOMM Qts110
All of the following
QUALCOMM Snapdragon Wear 1100 Firmware
QUALCOMM Snapdragon Wear 1100
All of the following
QUALCOMM Snapdragon Wear 1200 Firmware
QUALCOMM Snapdragon Wear 1200
All of the following
QUALCOMM Snapdragon Wear 1300 Firmware
QUALCOMM Snapdragon Wear 1300
All of the following
QUALCOMM Snapdragon X5 Lte Modem Firmware
QUALCOMM Snapdragon X5 Lte Modem
All of the following
QUALCOMM Wcd9306 Firmware
Qualcomm Wcd9306
All of the following
Qualcomm Wcd9330 Firmware
QUALCOMM Wcd9330
QUALCOMM Mdm8207 Firmware
QUALCOMM Mdm8207
QUALCOMM Mdm9205 Firmware
QUALCOMM MDM9205
QUALCOMM Mdm9206 Firmware
QUALCOMM MDM9206
QUALCOMM Mdm9207 Firmware
QUALCOMM Mdm9207
QUALCOMM Qca4004 Firmware
QUALCOMM Qca4004
QUALCOMM Qts110 Firmware
QUALCOMM Qts110
QUALCOMM Snapdragon Wear 1100 Firmware
QUALCOMM Snapdragon Wear 1100
QUALCOMM Snapdragon Wear 1200 Firmware
QUALCOMM Snapdragon Wear 1200
QUALCOMM Snapdragon Wear 1300 Firmware
QUALCOMM Snapdragon Wear 1300
QUALCOMM Snapdragon X5 Lte Modem Firmware
QUALCOMM Snapdragon X5 Lte Modem
QUALCOMM Wcd9306 Firmware
Qualcomm Wcd9306
Qualcomm Wcd9330 Firmware
QUALCOMM Wcd9330
Event History
Apr 4, 2023
CVE Published
via MITRE·04:46 AM
Data Sourced
via MITRE·04:46 AM
DescriptionSeverityWeakness
Apr 13, 2023
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2022-33294.
2
What is the severity of CVE-2022-33294?
The severity of CVE-2022-33294 is high.
3
What software is affected by this vulnerability?
The Qualcomm Mdm8207 Firmware, Qualcomm Mdm9205 Firmware, Qualcomm Mdm9206 Firmware, and Qualcomm Mdm9207 Firmware are affected by this vulnerability.
4
How does this vulnerability affect the affected software?
This vulnerability can result in transient denial-of-service (DoS) in the Modem due to a NULL pointer dereference while receiving the response of lwm2m registration/update/bootstrap request message.
5
How can I fix CVE-2022-33294?
To fix CVE-2022-33294, it is recommended to apply the necessary security patch or firmware update provided by Qualcomm.