CVE-2022-33248 – Integer overflow to buffer overflow in User Identity Module
https://notcve.org/view.php?id=CVE-2022-33248
Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-190: Integer Overflow or Wraparound CWE-680: Integer Overflow to Buffer Overflow •
CVE-2022-33233 – Configuration weakness in modem
https://notcve.org/view.php?id=CVE-2022-33233
Memory corruption due to configuration weakness in modem wile sending command to write protected files. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-16: Configuration CWE-787: Out-of-bounds Write •
CVE-2022-33229 – Buffer over-read in Modem
https://notcve.org/view.php?id=CVE-2022-33229
Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets. • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •
CVE-2022-25738 – Buffer Over-read in MODEM
https://notcve.org/view.php?id=CVE-2022-25738
Information disclosure in modem due to buffer over-red while performing checksum of packet received • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •
CVE-2022-25735 – Null Pointer Dereference in MODEM
https://notcve.org/view.php?id=CVE-2022-25735
Denial of service in modem due to missing null check while processing TCP or UDP packets from server • https://www.qualcomm.com/company/product-security/bulletins/february-2023-bulletin • CWE-476: NULL Pointer Dereference •