
CVE-2022-33303 – Uncontrolled resource consumption in Linux kernel
https://notcve.org/view.php?id=CVE-2022-33303
06 Jun 2023 — Transient DOS due to uncontrolled resource consumption in Linux kernel when malformed messages are sent from the Gunyah Resource Manager message queue. • https://www.qualcomm.com/company/product-security/bulletins/june-2023-bulletin • CWE-400: Uncontrolled Resource Consumption •

CVE-2022-33267 – Improper restriction of operations within the bounds of memory buffer in Linux
https://notcve.org/view.php?id=CVE-2022-33267
06 Jun 2023 — Memory corruption in Linux while sending DRM request. • https://www.qualcomm.com/company/product-security/bulletins/june-2023-bulletin • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer CWE-787: Out-of-bounds Write •

CVE-2022-33264 – Stack-based buffer overflow in Modem
https://notcve.org/view.php?id=CVE-2022-33264
06 Jun 2023 — Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message. • https://www.qualcomm.com/company/product-security/bulletins/june-2023-bulletin • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •

CVE-2022-33240 – Incorrect type conversion or cast in Audio
https://notcve.org/view.php?id=CVE-2022-33240
06 Jun 2023 — Memory corruption in Audio due to incorrect type cast during audio use-cases. • https://www.qualcomm.com/company/product-security/bulletins/june-2023-bulletin • CWE-704: Incorrect Type Conversion or Cast •

CVE-2022-33230 – Buffer copy without checking the size of input in FM Host
https://notcve.org/view.php?id=CVE-2022-33230
06 Jun 2023 — Memory corruption in FM Host due to buffer copy without checking the size of input in FM Host • https://www.qualcomm.com/company/product-security/bulletins/june-2023-bulletin • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2022-33227 – Double free in Linux-Android
https://notcve.org/view.php?id=CVE-2022-33227
06 Jun 2023 — Memory corruption in Linux android due to double free while calling unregister provider after register call. • https://www.qualcomm.com/company/product-security/bulletins/june-2023-bulletin • CWE-415: Double Free •

CVE-2022-33224 – Buffer copy without checking the size of input in Core
https://notcve.org/view.php?id=CVE-2022-33224
06 Jun 2023 — Memory corruption in core due to buffer copy without check9ing the size of input while processing ioctl queries. • https://www.qualcomm.com/company/product-security/bulletins/june-2023-bulletin • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2022-22076 – Cryptographic issue in Core
https://notcve.org/view.php?id=CVE-2022-22076
06 Jun 2023 — information disclosure due to cryptographic issue in Core during RPMB read request. • https://www.qualcomm.com/company/product-security/bulletins/june-2023-bulletin • CWE-310: Cryptographic Issues •

CVE-2022-40504 – Reachable assertion in Modem
https://notcve.org/view.php?id=CVE-2022-40504
02 May 2023 — Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-617: Reachable Assertion •

CVE-2022-33273 – Buffer over-read in Trusted Execution Environment
https://notcve.org/view.php?id=CVE-2022-33273
02 May 2023 — Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •