CVE-2022-33289 — Improper Validation of Array Index in INC Snapdragon
Severity
6.8MEDIUMNVD
EPSS
0.1%
top 82.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 13
Description
Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.
CVSS vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 0.9 | Impact: 5.9