Vulnerability Name:

CVE-2022-22072 (CCN-228689)

Assigned:2021-12-21
Published:2022-05-03
Updated:2022-06-22
Summary:Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
CVSS v3 Severity:7.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
6.8 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
7.8 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
6.8 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
6.8 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-Other
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2022-22072

Source: CCN
Type: Qualcomm Web site
May 2022 Security Bulletin

Source: XF
Type: UNKNOWN
qualcomm-cve202222072-bo(228689)

Source: CONFIRM
Type: Patch, Vendor Advisory
https://www.qualcomm.com/company/product-security/bulletins/may-2022-bulletin

Vulnerable Configuration:Configuration 1:
  • cpe:/o:qualcomm:apq8009_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:apq8009:-:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/o:qualcomm:apq8017_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:apq8017:-:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/o:qualcomm:apq8053_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:apq8053:-:*:*:*:*:*:*:*

  • Configuration 4:
  • cpe:/o:qualcomm:apq8096au_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:apq8096au:-:*:*:*:*:*:*:*

  • Configuration 5:
  • cpe:/o:qualcomm:ar8031_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:ar8031:-:*:*:*:*:*:*:*

  • Configuration 6:
  • cpe:/o:qualcomm:csra6620_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:csra6620:-:*:*:*:*:*:*:*

  • Configuration 7:
  • cpe:/o:qualcomm:csra6640_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:csra6640:-:*:*:*:*:*:*:*

  • Configuration 8:
  • cpe:/o:qualcomm:mdm9150_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:mdm9150:-:*:*:*:*:*:*:*

  • Configuration 9:
  • cpe:/o:qualcomm:mdm9206_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:mdm9206:-:*:*:*:*:*:*:*

  • Configuration 10:
  • cpe:/o:qualcomm:mdm9250_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:mdm9250:-:*:*:*:*:*:*:*

  • Configuration 11:
  • cpe:/o:qualcomm:mdm9607_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:mdm9607:-:*:*:*:*:*:*:*

  • Configuration 12:
  • cpe:/o:qualcomm:mdm9626_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:mdm9626:-:*:*:*:*:*:*:*

  • Configuration 13:
  • cpe:/o:qualcomm:mdm9628_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:mdm9628:-:*:*:*:*:*:*:*

  • Configuration 14:
  • cpe:/o:qualcomm:mdm9650_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:mdm9650:-:*:*:*:*:*:*:*

  • Configuration 15:
  • cpe:/o:qualcomm:msm8937_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:msm8937:-:*:*:*:*:*:*:*

  • Configuration 16:
  • cpe:/o:qualcomm:pm8937_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:pm8937:-:*:*:*:*:*:*:*

  • Configuration 17:
  • cpe:/o:qualcomm:qca4020_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca4020:-:*:*:*:*:*:*:*

  • Configuration 18:
  • cpe:/o:qualcomm:qca6174a_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca6174a:-:*:*:*:*:*:*:*

  • Configuration 19:
  • cpe:/o:qualcomm:qca6175a_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca6175a:-:*:*:*:*:*:*:*

  • Configuration 20:
  • cpe:/o:qualcomm:qca6310_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca6310:-:*:*:*:*:*:*:*

  • Configuration 21:
  • cpe:/o:qualcomm:qca6320_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca6320:-:*:*:*:*:*:*:*

  • Configuration 22:
  • cpe:/o:qualcomm:qca6335_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca6335:-:*:*:*:*:*:*:*

  • Configuration 23:
  • cpe:/o:qualcomm:qca6564a_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca6564a:-:*:*:*:*:*:*:*

  • Configuration 24:
  • cpe:/o:qualcomm:qca6564au_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca6564au:-:*:*:*:*:*:*:*

  • Configuration 25:
  • cpe:/o:qualcomm:qca6574_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca6574:-:*:*:*:*:*:*:*

  • Configuration 26:
  • cpe:/o:qualcomm:qca6574a_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca6574a:-:*:*:*:*:*:*:*

  • Configuration 27:
  • cpe:/o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca6574au:-:*:*:*:*:*:*:*

  • Configuration 28:
  • cpe:/o:qualcomm:qca9367_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca9367:-:*:*:*:*:*:*:*

  • Configuration 29:
  • cpe:/o:qualcomm:qca9377_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca9377:-:*:*:*:*:*:*:*

  • Configuration 30:
  • cpe:/o:qualcomm:qca9379_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca9379:-:*:*:*:*:*:*:*

  • Configuration 31:
  • cpe:/o:qualcomm:qcs405_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qcs405:-:*:*:*:*:*:*:*

  • Configuration 32:
  • cpe:/o:qualcomm:qcs603_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qcs603:-:*:*:*:*:*:*:*

  • Configuration 33:
  • cpe:/o:qualcomm:qcs605_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qcs605:-:*:*:*:*:*:*:*

  • Configuration 34:
  • cpe:/o:qualcomm:sa515m_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sa515m:-:*:*:*:*:*:*:*

  • Configuration 35:
  • cpe:/o:qualcomm:sd670_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sd670:-:*:*:*:*:*:*:*

  • Configuration 36:
  • cpe:/o:qualcomm:sd710_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sd710:-:*:*:*:*:*:*:*

  • Configuration 37:
  • cpe:/o:qualcomm:sd820_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sd820:-:*:*:*:*:*:*:*

  • Configuration 38:
  • cpe:/o:qualcomm:sd835_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sd835:-:*:*:*:*:*:*:*

  • Configuration 39:
  • cpe:/o:qualcomm:sd845_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sd845:-:*:*:*:*:*:*:*

  • Configuration 40:
  • cpe:/o:qualcomm:sdx12_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sdx12:-:*:*:*:*:*:*:*

  • Configuration 41:
  • cpe:/o:qualcomm:sdx20_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sdx20:-:*:*:*:*:*:*:*

  • Configuration 42:
  • cpe:/o:qualcomm:sdx24_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sdx24:-:*:*:*:*:*:*:*

  • Configuration 43:
  • cpe:/o:qualcomm:sdxr1_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sdxr1:-:*:*:*:*:*:*:*

  • Configuration 44:
  • cpe:/o:qualcomm:wcd9326_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcd9326:-:*:*:*:*:*:*:*

  • Configuration 45:
  • cpe:/o:qualcomm:wcd9330_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcd9330:-:*:*:*:*:*:*:*

  • Configuration 46:
  • cpe:/o:qualcomm:wcd9335_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcd9335:-:*:*:*:*:*:*:*

  • Configuration 47:
  • cpe:/o:qualcomm:wcd9340_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcd9340:-:*:*:*:*:*:*:*

  • Configuration 48:
  • cpe:/o:qualcomm:wcd9341_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcd9341:-:*:*:*:*:*:*:*

  • Configuration 49:
  • cpe:/o:qualcomm:wcn3610_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn3610:-:*:*:*:*:*:*:*

  • Configuration 50:
  • cpe:/o:qualcomm:wcn3615_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn3615:-:*:*:*:*:*:*:*

  • Configuration 51:
  • cpe:/o:qualcomm:wcn3660b_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*

  • Configuration 52:
  • cpe:/o:qualcomm:wcn3680b_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn3680b:-:*:*:*:*:*:*:*

  • Configuration 53:
  • cpe:/o:qualcomm:wcn3980_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn3980:-:*:*:*:*:*:*:*

  • Configuration 54:
  • cpe:/o:qualcomm:wcn3990_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn3990:-:*:*:*:*:*:*:*

  • Configuration 55:
  • cpe:/o:qualcomm:wcn3998_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn3998:-:*:*:*:*:*:*:*

  • Configuration 56:
  • cpe:/o:qualcomm:wcn3999_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn3999:-:*:*:*:*:*:*:*

  • Configuration 57:
  • cpe:/o:qualcomm:wsa8810_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wsa8810:-:*:*:*:*:*:*:*

  • Configuration 58:
  • cpe:/o:qualcomm:wsa8815_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wsa8815:-:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/h:qualcomm:sm8475:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcd9380:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcn6855:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcn6856:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wsa8830:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wsa8835:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:sa8155p:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:sa8540p:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:sd865_5g:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:sd888_5g:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:sdx65:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:sm7450:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:sm8475:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:sm8475p:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcd9370:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcd9375:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcd9385:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcn6750:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcn6850:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcn6851:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcn6856:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:wcn7850:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:sa9000p:-:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    qualcomm apq8009 firmware -
    qualcomm apq8009 -
    qualcomm apq8017 firmware -
    qualcomm apq8017 -
    qualcomm apq8053 firmware -
    qualcomm apq8053 -
    qualcomm apq8096au firmware -
    qualcomm apq8096au -
    qualcomm ar8031 firmware -
    qualcomm ar8031 -
    qualcomm csra6620 firmware -
    qualcomm csra6620 -
    qualcomm csra6640 firmware -
    qualcomm csra6640 -
    qualcomm mdm9150 firmware -
    qualcomm mdm9150 -
    qualcomm mdm9206 firmware -
    qualcomm mdm9206 -
    qualcomm mdm9250 firmware -
    qualcomm mdm9250 -
    qualcomm mdm9607 firmware -
    qualcomm mdm9607 -
    qualcomm mdm9626 firmware -
    qualcomm mdm9626 -
    qualcomm mdm9628 firmware -
    qualcomm mdm9628 -
    qualcomm mdm9650 firmware -
    qualcomm mdm9650 -
    qualcomm msm8937 firmware -
    qualcomm msm8937 -
    qualcomm pm8937 firmware -
    qualcomm pm8937 -
    qualcomm qca4020 firmware -
    qualcomm qca4020 -
    qualcomm qca6174a firmware -
    qualcomm qca6174a -
    qualcomm qca6175a firmware -
    qualcomm qca6175a -
    qualcomm qca6310 firmware -
    qualcomm qca6310 -
    qualcomm qca6320 firmware -
    qualcomm qca6320 -
    qualcomm qca6335 firmware -
    qualcomm qca6335 -
    qualcomm qca6564a firmware -
    qualcomm qca6564a -
    qualcomm qca6564au firmware -
    qualcomm qca6564au -
    qualcomm qca6574 firmware -
    qualcomm qca6574 -
    qualcomm qca6574a firmware -
    qualcomm qca6574a -
    qualcomm qca6574au firmware -
    qualcomm qca6574au -
    qualcomm qca9367 firmware -
    qualcomm qca9367 -
    qualcomm qca9377 firmware -
    qualcomm qca9377 -
    qualcomm qca9379 firmware -
    qualcomm qca9379 -
    qualcomm qcs405 firmware -
    qualcomm qcs405 -
    qualcomm qcs603 firmware -
    qualcomm qcs603 -
    qualcomm qcs605 firmware -
    qualcomm qcs605 -
    qualcomm sa515m firmware -
    qualcomm sa515m -
    qualcomm sd670 firmware -
    qualcomm sd670 -
    qualcomm sd710 firmware -
    qualcomm sd710 -
    qualcomm sd820 firmware -
    qualcomm sd820 -
    qualcomm sd835 firmware -
    qualcomm sd835 -
    qualcomm sd845 firmware -
    qualcomm sd845 -
    qualcomm sdx12 firmware -
    qualcomm sdx12 -
    qualcomm sdx20 firmware -
    qualcomm sdx20 -
    qualcomm sdx24 firmware -
    qualcomm sdx24 -
    qualcomm sdxr1 firmware -
    qualcomm sdxr1 -
    qualcomm wcd9326 firmware -
    qualcomm wcd9326 -
    qualcomm wcd9330 firmware -
    qualcomm wcd9330 -
    qualcomm wcd9335 firmware -
    qualcomm wcd9335 -
    qualcomm wcd9340 firmware -
    qualcomm wcd9340 -
    qualcomm wcd9341 firmware -
    qualcomm wcd9341 -
    qualcomm wcn3610 firmware -
    qualcomm wcn3610 -
    qualcomm wcn3615 firmware -
    qualcomm wcn3615 -
    qualcomm wcn3660b firmware -
    qualcomm wcn3660b -
    qualcomm wcn3680b firmware -
    qualcomm wcn3680b -
    qualcomm wcn3980 firmware -
    qualcomm wcn3980 -
    qualcomm wcn3990 firmware -
    qualcomm wcn3990 -
    qualcomm wcn3998 firmware -
    qualcomm wcn3998 -
    qualcomm wcn3999 firmware -
    qualcomm wcn3999 -
    qualcomm wsa8810 firmware -
    qualcomm wsa8810 -
    qualcomm wsa8815 firmware -
    qualcomm wsa8815 -
    qualcomm sd 8 gen1 5g -
    qualcomm wcd9380 -
    qualcomm wcn6855 -
    qualcomm wcn6856 -
    qualcomm wsa8830 -
    qualcomm wsa8835 -
    qualcomm sa8155p -
    qualcomm sa8540p -
    qualcomm sd865 5g -
    qualcomm sd888 5g -
    qualcomm sdx65 -
    qualcomm sm7450 -
    qualcomm sm8475 -
    qualcomm sm8475p -
    qualcomm wcd9370 -
    qualcomm wcd9375 -
    qualcomm wcd9385 -
    qualcomm wcn6750 -
    qualcomm wcn6850 -
    qualcomm wcn6851 -
    qualcomm wcn6856 -
    qualcomm wcn7850 -
    qualcomm sa9000p -