CVE-2022-25745

Memory corruption in modem due to improper input validation while handling the incoming CoAP message
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:mdm9205_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9205:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:qca4004_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca4004:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:qts110_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qts110:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_wear_1300_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_wear_1300:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:wcd9306_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9306:-:*:*:*:*:*:*:*

History

24 Apr 2023, 16:20

Type Values Removed Values Added
CWE CWE-670
First Time Qualcomm wcd9306 Firmware
Qualcomm wcd9306
Qualcomm snapdragon Wear 1300
Qualcomm qts110 Firmware
Qualcomm mdm9205 Firmware
Qualcomm mdm9205
Qualcomm
Qualcomm snapdragon Wear 1300 Firmware
Qualcomm qca4004 Firmware
Qualcomm qca4004
Qualcomm qts110
References (MISC) https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin - (MISC) https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin - Vendor Advisory
CPE cpe:2.3:o:qualcomm:snapdragon_wear_1300_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9306:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qts110_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9205:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:mdm9205_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca4004_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9306_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qts110:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_wear_1300:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca4004:-:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

13 Apr 2023, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-04-13 07:15

Updated : 2024-04-12 17:15


NVD link : CVE-2022-25745

Mitre link : CVE-2022-25745

CVE.ORG link : CVE-2022-25745


JSON object : View

Products Affected

qualcomm

  • wcd9306_firmware
  • snapdragon_wear_1300
  • mdm9205
  • wcd9306
  • qts110
  • mdm9205_firmware
  • qts110_firmware
  • snapdragon_wear_1300_firmware
  • qca4004_firmware
  • qca4004
CWE
CWE-670

Always-Incorrect Control Flow Implementation