PT-2021-7846 · Qualcomm · Qualcomm

Published

2021-10-18

·

Updated

2024-04-12

·

CVE-2022-40525

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Linux Networking Firmware (affected versions not specified)
Description The issue is related to insufficient protection of service data during side channel analysis in the Linux Networking Firmware, specifically affecting Qualcomm embedded platforms. This could allow an attacker to gain unauthorized access to protected information. The estimated number of potentially affected devices worldwide is not available.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Exposure of Resource to Wrong Sphere

Weakness Enumeration

Related Identifiers

BDU:2023-03672
CVE-2022-40525

Affected Products

Qualcomm