CVE-2022-40540

Memory corruption due to buffer copy without checking the size of input while loading firmware in Linux Kernel.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:h:qualcomm:sm8475:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd_8_gen1_5g_firmware:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:h:qualcomm:sd888_5g:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd888_5g_firmware:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:h:qualcomm:sw5100:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sw5100_firmware:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:h:qualcomm:sw5100p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sw5100p_firmware:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3980_firmware:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:h:qualcomm:wcn3988:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3988_firmware:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:h:qualcomm:wcn6850:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn6850_firmware:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:h:qualcomm:wcn6851:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn6851_firmware:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:h:qualcomm:wcn6855:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn6855_firmware:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:h:qualcomm:wcn6856:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn6856_firmware:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:h:qualcomm:wcn7850:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn7850_firmware:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:h:qualcomm:wcn7851:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn7851_firmware:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*

History

25 Mar 2024, 05:15

Type Values Removed Values Added
References
  • () https://bugzilla.suse.com/show_bug.cgi?id=1209597 -

16 Jun 2023, 15:15

Type Values Removed Values Added
References
  • (MISC) https://security.netapp.com/advisory/ntap-20230616-0001/ -

Information

Published : 2023-03-10 21:15

Updated : 2024-04-12 17:16


NVD link : CVE-2022-40540

Mitre link : CVE-2022-40540

CVE.ORG link : CVE-2022-40540


JSON object : View

Products Affected

qualcomm

  • wcn7850_firmware
  • wcn6855
  • wcn6851_firmware
  • sw5100p_firmware
  • wcd9380
  • wcd9380_firmware
  • wcd9385_firmware
  • sd_8_gen1_5g_firmware
  • wcn6856_firmware
  • wcn3980
  • wsa8830_firmware
  • sd888_5g
  • wcn3988_firmware
  • sm8475
  • wsa8830
  • wcd9385
  • wsa8835_firmware
  • wcn6850
  • sw5100p
  • wcn6851
  • sw5100
  • wcn7851
  • wcn7851_firmware
  • wcn6855_firmware
  • wsa8835
  • wcn7850
  • wcn3980_firmware
  • wcn6850_firmware
  • wcn3988
  • sd888_5g_firmware
  • sw5100_firmware
  • wcn6856
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')