
CVE-2022-25694 – Use of Out-of-range Pointer Offset in MODEM
https://notcve.org/view.php?id=CVE-2022-25694
07 Mar 2023 — Memory corruption in Modem due to usage of Out-of-range pointer offset in UIM • https://www.qualcomm.com/company/product-security/bulletins/march-2023-bulletin • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer CWE-823: Use of Out-of-range Pointer Offset •

CVE-2022-22075 – Information Exposure in Graphics
https://notcve.org/view.php?id=CVE-2022-22075
07 Mar 2023 — Information Disclosure in Graphics during GPU context switch. • https://www.qualcomm.com/company/product-security/bulletins/march-2023-bulletin • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2022-33248 – Integer overflow to buffer overflow in User Identity Module
https://notcve.org/view.php?id=CVE-2022-33248
09 Feb 2023 — Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-190: Integer Overflow or Wraparound CWE-680: Integer Overflow to Buffer Overflow •

CVE-2022-33243 – Improper access control in Qualcomm IPC
https://notcve.org/view.php?id=CVE-2022-33243
09 Feb 2023 — Memory corruption due to improper access control in Qualcomm IPC. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-284: Improper Access Control •

CVE-2022-33233 – Configuration weakness in modem
https://notcve.org/view.php?id=CVE-2022-33233
09 Feb 2023 — Memory corruption due to configuration weakness in modem wile sending command to write protected files. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-16: Configuration CWE-787: Out-of-bounds Write •

CVE-2022-33225 – Use after free in Trusted Application Environment
https://notcve.org/view.php?id=CVE-2022-33225
09 Feb 2023 — Memory corruption due to use after free in trusted application environment. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-416: Use After Free •

CVE-2022-33266 – Integer overflow to buffer overflow in Audio
https://notcve.org/view.php?id=CVE-2022-33266
06 Jan 2023 — Memory corruption in Audio due to integer overflow to buffer overflow while music playback of clips like amr,evrc,qcelp with modified content. • https://www.qualcomm.com/company/product-security/bulletins/january-2023-bulletin • CWE-190: Integer Overflow or Wraparound •

CVE-2022-33255 – Buffer over-read in Bluetooth HOST
https://notcve.org/view.php?id=CVE-2022-33255
06 Jan 2023 — Information disclosure due to buffer over-read in Bluetooth HOST while processing GetFolderItems and GetItemAttribute Cmds from peer device. • https://www.qualcomm.com/company/product-security/bulletins/january-2023-bulletin • CWE-125: Out-of-bounds Read CWE-787: Out-of-bounds Write •

CVE-2022-25722 – Information Exposure in DSP Services
https://notcve.org/view.php?id=CVE-2022-25722
06 Jan 2023 — Information exposure in DSP services due to improper handling of freeing memory Exposición de información en servicios DSP por manejo inadecuado de liberación de memoria • https://www.qualcomm.com/company/product-security/bulletins/january-2023-bulletin • CWE-416: Use After Free •

CVE-2022-25721 – Incorrect Type Conversion in Video driver
https://notcve.org/view.php?id=CVE-2022-25721
06 Jan 2023 — Memory corruption in video driver due to type confusion error during video playback Corrupción de la memoria en el controlador de video debido a un error de confusión de tipos durante la reproducción de video • https://www.qualcomm.com/company/product-security/bulletins/january-2023-bulletin • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •