CVE-2022-33221

MEDIUM

Qualcomm Trusted Execution Environment Firmware - Information Disclosure

Title source: llm
STIX 2.1

Description

Information disclosure in Trusted Execution Environment due to buffer over-read while processing metadata verification requests.

References (1)

Core 1

Scores

CVSS v3 6.8
EPSS 0.0007
EPSS Percentile 22.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L

Details

CWE
CWE-125 CWE-126
Status published
Products (14)
qualcomm/sd_8_gen1_5g_firmware
qualcomm/ssg2115p_firmware
qualcomm/ssg2125p_firmware
qualcomm/sxr1230p_firmware
qualcomm/sxr2230p_firmware
qualcomm/wcd9380_firmware
qualcomm/wcd9385_firmware
qualcomm/wcn6855_firmware
qualcomm/wcn6856_firmware
qualcomm/wcn7850_firmware
... and 4 more
Published Feb 12, 2023
Tracked Since Feb 18, 2026