CVE-2022-25739 – Null Point Dereference in MODEM
https://notcve.org/view.php?id=CVE-2022-25739
Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call • https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin • CWE-476: NULL Pointer Dereference •
CVE-2022-25730 – Buffer Over-read in MODEM
https://notcve.org/view.php?id=CVE-2022-25730
Information disclosure in modem due to improper check of IP type while processing DNS server query • https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •
CVE-2022-25726 – Buffer Over-read in MODEM
https://notcve.org/view.php?id=CVE-2022-25726
Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet • https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •
CVE-2022-40540 – Buffer copy without checking the size of input in Linux Kernel
https://notcve.org/view.php?id=CVE-2022-40540
Memory corruption due to buffer copy without checking the size of input while loading firmware in Linux Kernel. • https://bugzilla.suse.com/show_bug.cgi?id=1209597 https://security.netapp.com/advisory/ntap-20230616-0001 https://www.qualcomm.com/company/product-security/bulletins/march-2023-bulletin • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2022-40537 – Improper Validation of Array Index in Bluetooth HOST
https://notcve.org/view.php?id=CVE-2022-40537
Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response. • https://www.qualcomm.com/company/product-security/bulletins/march-2023-bulletin • CWE-129: Improper Validation of Array Index •