CVE-2022-33248 – Integer overflow to buffer overflow in User Identity Module
https://notcve.org/view.php?id=CVE-2022-33248
Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-190: Integer Overflow or Wraparound CWE-680: Integer Overflow to Buffer Overflow •
CVE-2022-33243 – Improper access control in Qualcomm IPC
https://notcve.org/view.php?id=CVE-2022-33243
Memory corruption due to improper access control in Qualcomm IPC. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-284: Improper Access Control •
CVE-2022-33233 – Configuration weakness in modem
https://notcve.org/view.php?id=CVE-2022-33233
Memory corruption due to configuration weakness in modem wile sending command to write protected files. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-16: Configuration CWE-787: Out-of-bounds Write •
CVE-2022-33232 – Buffer copy without checking size of input in Hypervisor
https://notcve.org/view.php?id=CVE-2022-33232
Memory corruption due to buffer copy without checking size of input while running memory sharing tests with large scattered memory. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2022-33225 – Use after free in Trusted Application Environment
https://notcve.org/view.php?id=CVE-2022-33225
Memory corruption due to use after free in trusted application environment. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-416: Use After Free •