CVE-2022-25726Buffer Over-read in INC Snapdragon

Severity
7.5HIGHNVD
EPSS
0.3%
top 46.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 13

Description

Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

CVEListV5qualcomm_inc/snapdragon24 versions+23

🔴Vulnerability Details

1
GHSA
GHSA-rfgf-82hw-xm75: Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet2023-04-13