CVE-2022-25680
HIGHCVSS 7.8/10EPSS 0.12%
Last modified
CVE-2022-25680 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. Memory corruption in multimedia due to buffer overflow while processing count variable from client in Snapdragon Auto. EPSS estimates a 0.12% chance of exploitation in the next 30 days.
Description
Memory corruption in multimedia due to buffer overflow while processing count variable from client in Snapdragon Auto
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Msm8996au Firmware | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-25680?
Memory corruption in multimedia due to buffer overflow while processing count variable from client in Snapdragon Auto
How severe is CVE-2022-25680?
CVE-2022-25680 has a CVSS score of 7.8/10 (HIGH severity). The EPSS model estimates a 0.12% probability of exploitation in the next 30 days.
How do I fix CVE-2022-25680?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-25675Denial of service due to reachable assertion in modem while …5.5
- CVE-2022-25676Information disclosure in video due to buffer over-read whil…5.5
- CVE-2022-25677Memory corruption in diag due to use after free while proces…7.8
- CVE-2022-25678Memory correction in modem due to buffer overwrite during co…9.8
- CVE-2022-25679Denial of service in video due to improper access control in…5.5
- CVE-2022-2568A privilege escalation flaw was found in the Ansible Automat…6.5
- CVE-2022-25681Possible memory corruption in kernel while performing memory…7.8
- CVE-2022-25682Memory corruption in MODEM UIM due to usage of out of range …7.8
- CVE-2022-25685Denial of service in Modem module due to improper authorizat…7.5
- CVE-2022-25686Memory corruption in video module due to buffer overflow whi…9.8
- CVE-2022-25687memory corruption in video due to buffer overflow while pars…9.8
- CVE-2022-25688Memory corruption in video due to buffer overflow while pars…9.8
Are you affected by CVE-2022-25680?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
