CVE-2022-40530Integer Overflow to Buffer Overflow in INC Snapdragon

Severity
7.8HIGHNVD
EPSS
0.1%
top 67.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 10

Description

Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5qualcomm_inc/snapdragon189 versions+188

🔴Vulnerability Details

1
GHSA
GHSA-j83q-whgg-hfg9: Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase2023-03-10

📋Vendor Advisories

1
Android
CVE-2022-40530: Closed-source component2023-03-01