Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Lei Ai

Researcher fromOPPO Amber Security Lab
#14779of 53,638
18.3Total CVSS
Vulnerabilities · 2
High
1
Critical
1
PT-2022-15232
9.8
2022-09-02
Qualcomm · Qualcomm Snapdragon Connectivity · CVE-2022-22096
**Name of the Vulnerable Software and Affected Versions** Qualcomm Snapdragon Connectivity and Snapdragon Mobile (affected versions not specified) **Description** The issue is related to memory corruption in the Bluetooth HOST component due to a stack-based buffer overflow. This occurs when extracting data using the command length parameter. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2022-4883
8.5
2022-03-17
Qualcomm · Qualcomm Snapdragon · CVE-2022-25706
**Name of the Vulnerable Software and Affected Versions** Qualcomm Snapdragon versions (affected versions not specified) **Description** The issue is related to a buffer over-read in the Bluetooth driver while reading l2cap length, potentially allowing an unauthorized access to protected information or causing a denial of service. This is due to the lack of buffer length checks and out-of-bounds memory reading when handling the `l2cap` parameter. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.