HIGH · 8.4

CVE-2022-25750

Memory corruption in BTHOST due to double free while music playback and calls over bluetooth headset in Snapdragon Mobile

Vulnerability Description

Memory corruption in BTHOST due to double free while music playback and calls over bluetooth headset in Snapdragon Mobile

CVSS Score

8.4

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
QualcommKailua Firmware-
QualcommKailua-
QualcommSg8275 Firmware-
QualcommSg8275-
QualcommSg8275P Firmware-
QualcommSg8275P-
QualcommSm8550 Firmware-
QualcommSm8550-
QualcommWcd9380 Firmware-
QualcommWcd9380-
QualcommWcd9385 Firmware-
QualcommWcd9385-
QualcommWcd9390 Firmware-
QualcommWcd9390-
QualcommWcd9395 Firmware-
QualcommWcd9395-
QualcommWcn6855 Firmware-
QualcommWcn6855-
QualcommWcn6856 Firmware-
QualcommWcn6856-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-25750?

CVE-2022-25750 is a vulnerability with a CVSS score of 8.4 (HIGH). Memory corruption in BTHOST due to double free while music playback and calls over bluetooth headset in Snapdragon Mobile

How severe is CVE-2022-25750?

CVE-2022-25750 has been rated HIGH with a CVSS base score of 8.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-25750?

Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Kailua Firmware, Qualcomm Kailua, Qualcomm Sg8275 Firmware, Qualcomm Sg8275, Qualcomm Sg8275P Firmware.