CVE-2022-25732Buffer Over-read in INC Snapdragon

Severity
7.5HIGHNVD
EPSS
0.3%
top 46.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 12

Description

Information disclosure in modem due to buffer over read in dns client due to missing length check

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

CVEListV5qualcomm_inc/snapdragon33 versions+32

🔴Vulnerability Details

1
GHSA
GHSA-hh45-w5qf-pxvx: Information disclosure in modem due to buffer over read in dns client due to missing length check2023-02-12