MEDIUM · 6.8

CVE-2022-33297

Information disclosure due to buffer overread in Linux sensors

Vulnerability Description

Information disclosure due to buffer overread in Linux sensors

CVSS Score

6.8

MEDIUM

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
LOW

Affected Products

VendorProductVersions
QualcommQca6310 Firmware-
QualcommQca6310-
QualcommQca6320 Firmware-
QualcommQca6320-
QualcommSd835 Firmware-
QualcommSd835-
QualcommSnapdragon 835 Mobile Platform Firmware-
QualcommSnapdragon 835 Mobile Platform-
QualcommWcd9335 Firmware-
QualcommWcd9335-
QualcommWcd9340 Firmware-
QualcommWcd9340-
QualcommWcd9341 Firmware-
QualcommWcd9341-
QualcommWcn3990 Firmware-
QualcommWcn3990-
QualcommWsa8810 Firmware-
QualcommWsa8810-
QualcommWsa8815 Firmware-
QualcommWsa8815-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-33297?

CVE-2022-33297 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Information disclosure due to buffer overread in Linux sensors

How severe is CVE-2022-33297?

CVE-2022-33297 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-33297?

Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Qca6310 Firmware, Qualcomm Qca6310, Qualcomm Qca6320 Firmware, Qualcomm Qca6320, Qualcomm Sd835 Firmware.