CVE-2022-25697

Memory corruption in i2c buses due to improper input validation while reading address configuration from i2c driver in Snapdragon Mobile, Snapdragon Wearables
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:sd_8_gen1_5g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sm8475:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:sd429_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd429:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:sda429w_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sda429w:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:sdm429w_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdm429w:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:wcn3610_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3610:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:wcn3620_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:qualcomm:wcn3660b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:qualcomm:wcn3680b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3680b:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:qualcomm:wcn3980_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:qualcomm:wcn6855_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn6855:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:qualcomm:wcn6856_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn6856:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:qualcomm:wcn7850_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn7850:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:qualcomm:wcn7851_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn7851:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:52

Type Values Removed Values Added
References () https://www.qualcomm.com/company/product-security/bulletins/december-2022-bulletin - Vendor Advisory () https://www.qualcomm.com/company/product-security/bulletins/december-2022-bulletin - Vendor Advisory
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 8.4

08 Aug 2023, 14:21

Type Values Removed Values Added
CWE CWE-20 CWE-787

Information

Published : 2022-12-13 16:15

Updated : 2024-11-21 06:52


NVD link : CVE-2022-25697

Mitre link : CVE-2022-25697

CVE.ORG link : CVE-2022-25697


JSON object : View

Products Affected

qualcomm

  • sd429
  • wcn3610
  • wcn7850
  • wcn3660b
  • wcn6855_firmware
  • wcn7851
  • wsa8835
  • sda429w
  • wcn3610_firmware
  • sm8475
  • wcn3680b_firmware
  • wcn7850_firmware
  • sdm429w_firmware
  • wcn6855
  • wcn3680b
  • sdm429w
  • wsa8830_firmware
  • wcd9380
  • wcn7851_firmware
  • wcn3660b_firmware
  • wcn3980_firmware
  • wcn6856
  • wsa8830
  • sda429w_firmware
  • wsa8835_firmware
  • wcn3980
  • sd429_firmware
  • wcd9380_firmware
  • wcn6856_firmware
  • wcn3620
  • sd_8_gen1_5g_firmware
  • wcn3620_firmware
CWE
CWE-787

Out-of-bounds Write