CVE-2022-33248 – Integer overflow to buffer overflow in User Identity Module
https://notcve.org/view.php?id=CVE-2022-33248
Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-190: Integer Overflow or Wraparound CWE-680: Integer Overflow to Buffer Overflow •
CVE-2022-33233 – Configuration weakness in modem
https://notcve.org/view.php?id=CVE-2022-33233
Memory corruption due to configuration weakness in modem wile sending command to write protected files. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-16: Configuration CWE-787: Out-of-bounds Write •
CVE-2022-40520 – Stack based buffer overflow in Core
https://notcve.org/view.php?id=CVE-2022-40520
Memory corruption due to stack-based buffer overflow in Core • https://www.qualcomm.com/company/product-security/bulletins/january-2023-bulletin • CWE-787: Out-of-bounds Write •
CVE-2022-33299 – Null pointer dereference in Bluetooth HOST
https://notcve.org/view.php?id=CVE-2022-33299
Transient DOS due to null pointer dereference in Bluetooth HOST while receiving an attribute protocol PDU with zero length data. DOS transitorio debido a la desreferencia del puntero nulo en Bluetooth HOST mientras se recibe una PDU de protocolo de atributos con datos de longitud cero. • https://www.qualcomm.com/company/product-security/bulletins/january-2023-bulletin • CWE-476: NULL Pointer Dereference •
CVE-2022-33290 – Null pointer dereference in Bluetooth HOST
https://notcve.org/view.php?id=CVE-2022-33290
Transient DOS in Bluetooth HOST due to null pointer dereference when a mismatched argument is passed. DOS transitorio en Bluetooth HOST debido a la desreferencia del puntero nulo cuando se pasa un argumento que no coincide. • https://www.qualcomm.com/company/product-security/bulletins/january-2023-bulletin • CWE-476: NULL Pointer Dereference •