Vulnerability

CVE-2022-33248

Component: IPC
Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http.

Impact

Severity (Manufact.)

HIGH

Severity (NIST)

7.8

Severity (Android)

N/A

Chipsets

12

Devices

384

Affected Hardware

NameAlso known asManufacturer
MSM8208
Snapdragon 208
Qualcomm
MSM8917
Snapdragon 425
Qualcomm
MSM8937
Snapdragon 430
Qualcomm
SM4375
Snapdragon 4 Gen 1
Qualcomm
SDM630
Snapdragon 630
Qualcomm
SDM636
Snapdragon 636
Qualcomm
SM6150
Snapdragon 675
Qualcomm
SM8475
Snapdragon 8+ Gen 1
Qualcomm
SC8180X
Snapdragon 8cx
Qualcomm
MSM8909w
Wear 2100
Wear 2500
Wear 3100
Qualcomm
12 of 12 row(s) shown.

Rows per page

Page 1 of 2

Timeline

Introduced (est):
Jan 1, 2014
Reported:
Mar 20, 2022
Advisory Published:
Feb 6, 2023
CVE Published:
Feb 12, 2023
Android Patch Level:
Feb 2023
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter