CVE-2022-25737Use of Uninitialized Variable in INC Snapdragon

Severity
7.5HIGHNVD
EPSS
0.3%
top 46.69%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 13

Description

Information disclosure in modem due to missing NULL check while reading packets received from local network

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

CVEListV5qualcomm_inc/snapdragon12 versions+11

🔴Vulnerability Details

1
GHSA
GHSA-m6rf-vjjx-jv33: Information disclosure in modem due to missing NULL check while reading packets received from local network2023-04-13