CVE-2022-33301

MEDIUM

Qualcomm Audio Component Firmware - Memory Corruption

Title source: llm
STIX 2.1

Description

Memory corruption due to incorrect type conversion or cast in audio while using audio playback/capture when crafted address is sent from AGM IPC to AGM.

Scores

CVSS v3 6.7
EPSS 0.0010
EPSS Percentile 27.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-704
Status published
Products (16)
qualcomm/qca6595_firmware
qualcomm/qca6595au_firmware
qualcomm/qca6696_firmware
qualcomm/sa6150p_firmware
qualcomm/sa6155p_firmware
qualcomm/sa8145p_firmware
qualcomm/sa8150p_firmware
qualcomm/sa8155p_firmware
qualcomm/sa8195p_firmware
qualcomm/snapdragon_w5\+_gen_1_wearable_platform_firmware
... and 6 more
Published Apr 13, 2023
Tracked Since Feb 18, 2026