CVE-2022-33278

HIGH

HLOS - Buffer Overflow

Title source: llm
STIX 2.1

Description

Memory corruption due to buffer copy without checking the size of input in HLOS when input message size is larger than the buffer capacity.

References (1)

Core 1

Scores

CVSS v3 7.8
EPSS 0.0009
EPSS Percentile 24.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-120
Status published
Products (50)
qualcomm/aqt1000_firmware
qualcomm/ar8035_firmware
qualcomm/csra6620_firmware
qualcomm/csra6640_firmware
qualcomm/qam8295p_firmware
qualcomm/qca6390_firmware
qualcomm/qca6391_firmware
qualcomm/qca6420_firmware
qualcomm/qca6421_firmware
qualcomm/qca6426_firmware
... and 40 more
Published Mar 10, 2023
Tracked Since Feb 18, 2026