CVE-2022-25723Use After Free in INC Snapdragon Mobile

CWE-416Use After Free3 documents3 sources
Severity
7.8HIGHNVD
EPSS
0.1%
top 70.21%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 19

Description

Memory corruption in multimedia due to use after free during callback registration failure in Snapdragon Mobile

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5qualcomm_inc/snapdragon_mobileSD 8 Gen1 5G, WCD9380, WCN6855, WCN6856, WCN7850, WCN7851, WSA8830, WSA8835

Patches

🔴Vulnerability Details

1
GHSA
GHSA-hxxq-xg5r-78jf: Memory corruption in multimedia due to use after free during callback registration failure in Snapdragon Mobile2022-10-19

📋Vendor Advisories

1
Android
CVE-2022-25723: Kernel2022-10-01