PT-2022-4875 · Qualcomm · Qualcomm Snapdragon

Published

2022-06-06

·

Updated

2023-04-19

·

CVE-2022-22089

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon versions (affected versions not specified)
Description The issue is related to memory corruption in audio while playing a record, caused by improper list handling in two threads. This is due to an integer overflow in the audio component of Qualcomm's embedded software. Exploitation of this issue may allow an attacker to cause a denial of service or execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Integer Overflow

Weakness Enumeration

Related Identifiers

BDU:2022-06002
CVE-2022-22089

Affected Products

Qualcomm Snapdragon