CVE-2023-22382: Improper Input Validation in Automotive
Weak configuration in Automotive while VM is processing a listener request from TEE.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-22382?
CVE-2023-22382 is a vulnerability that occurs due to weak configuration in Automotive while the virtual machine (VM) is processing a listener request from the TEE (Trusted Execution Environment).
What software is affected by CVE-2023-22382?
Qualcomm Apq8064au Firmware, Qualcomm Qam8295p Firmware, Qualcomm Qca6564au Firmware, Qualcomm Sa6150p Firmware, Qualcomm Sa8145p Firmware, Qualcomm Sa8155 Firmware, Qualcomm Sa8195p Firmware, Qualcomm Sa8295p Firmware, Qualcomm Sa8540p Firmware, Qualcomm Sa9000p Firmware, and Qualcomm Snapdragon 820 Automotive Platform Firmware are affected by CVE-2023-22382.
What is the severity of CVE-2023-22382?
CVE-2023-22382 has a severity rating of 8.2 (High).
How can I fix CVE-2023-22382?
To fix CVE-2023-22382, it is recommended to apply the necessary security patches provided by Qualcomm.
Where can I find more information about CVE-2023-22382?
You can find more information about CVE-2023-22382 in the October 2023 bulletin on Qualcomm's official website.