PT-2023-1617 · Qualcomm · Qualcomm Embedded Platform

CVE-2022-33265

·

Publicado

2023-01-05

·

Atualizado

2025-04-09

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Powerline Communication Firmware (affected versions not specified) Qualcomm embedded platform software (affected versions not specified)
Description The issue is related to memory corruption due to information exposure in Powerline Communication Firmware when sending different MMEs from a single, unassociated device. There is also a vulnerability in Qualcomm's embedded platform software related to the lack of protection for service data, which can allow a remote attacker to disclose protected information.
Recommendations For Powerline Communication Firmware, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For Qualcomm embedded platform software, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-01126
CVE-2022-33265

Produtos afetados

Qualcomm Embedded Platform