CVE-2022-25748
Published: 19 October 2022
Summary
CVE-2022-25748 is a critical-severity Integer Overflow or Wraparound (CWE-190) vulnerability in Qualcomm Apq8009 Firmware. Its CVSS base score is 9.8 (Critical).
Operationally, ranked in the top 38.9% of CVEs by exploit likelihood; it is not currently listed in the CISA KEV catalog.
EU & UK References
- 🇪🇺 ENISA EUVD: EUVD-2022-30403
Vulnerability details
Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music,…
more
Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
- CWE(s)
Related Threats
No named actor attribution yet. ATT&CK technique mapping in progress for this CVE.
Affected Assets
Mitigating Controls
No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.