CVE-2022-25681

HIGH

Qualcomm AQT1000 and AR8035 Firmware - Memory Corruption via Hypervisor Translation Cache Invalidation

Title source: llm
STIX 2.1

Description

Possible memory corruption in kernel while performing memory access due to hypervisor not correctly invalidated the processor translation caches in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

References (1)

Core 1

Scores

CVSS v3 8.4
EPSS 0.0015
EPSS Percentile 34.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-119
Status published
Products (50)
qualcomm/aqt1000_firmware
qualcomm/ar8035_firmware
qualcomm/qam8295p_firmware
qualcomm/qca6174a_firmware
qualcomm/qca6310_firmware
qualcomm/qca6335_firmware
qualcomm/qca6390_firmware
qualcomm/qca6391_firmware
qualcomm/qca6420_firmware
qualcomm/qca6421_firmware
... and 40 more
Published Dec 13, 2022
Tracked Since Feb 18, 2026