Vulnerability Description
Denial of service in Modem due to reachable assertion while processing SIB1 with invalid SCS and bandwidth settings in Snapdragon Mobile
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Ar8035 Firmware | - |
| Qualcomm | Ar8035 | - |
| Qualcomm | Qca8081 Firmware | - |
| Qualcomm | Qca8081 | - |
| Qualcomm | Qca8337 Firmware | - |
| Qualcomm | Qca8337 | - |
| Qualcomm | Qcn6024 Firmware | - |
| Qualcomm | Qcn6024 | - |
| Qualcomm | Qcn9024 Firmware | - |
| Qualcomm | Qcn9024 | - |
| Qualcomm | Sd 8 Gen1 5G Firmware | - |
| Qualcomm | Sm8475 | - |
| Qualcomm | Sd480 Firmware | - |
| Qualcomm | Sd480 | - |
| Qualcomm | Sd695 Firmware | - |
| Qualcomm | Sd695 | - |
| Qualcomm | Sdx65 Firmware | - |
| Qualcomm | Sdx65 | - |
| Qualcomm | Sm4375 Firmware | - |
| Qualcomm | Sm4375 | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/december-2022-bulletVendor Advisory
- https://www.qualcomm.com/company/product-security/bulletins/december-2022-bulletVendor Advisory
FAQ
What is CVE-2022-25691?
CVE-2022-25691 is a vulnerability with a CVSS score of 7.5 (HIGH). Denial of service in Modem due to reachable assertion while processing SIB1 with invalid SCS and bandwidth settings in Snapdragon Mobile
How severe is CVE-2022-25691?
CVE-2022-25691 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-25691?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Ar8035 Firmware, Qualcomm Ar8035, Qualcomm Qca8081 Firmware, Qualcomm Qca8081, Qualcomm Qca8337 Firmware.