2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-40538HIGH7.5Transient DOS due to reachable assertion in modem while processing sib with incorrect values from network.
CVE-2022-40536HIGH7.5Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network.
CVE-2022-40533MEDIUM5.5Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request.
CVE-2022-40529HIGH7.8Memory corruption due to improper access control in kernel while processing a mapping request from root process.
CVE-2022-40525MEDIUM5.5Information disclosure in Linux Networking Firmware due to unauthorized information leak during side channel analysis.
CVE-2022-40523MEDIUM5.5Information disclosure in Kernel due to indirect branch misprediction.
CVE-2022-40522HIGH7.8Memory corruption in Linux Networking due to double free while handling a hyp-assign.
CVE-2022-40521HIGH7.5Transient DOS due to improper authorization in Modem
CVE-2022-40507HIGH7.8Memory corruption due to double free in Core while mapping HLOS address to the list.
CVE-2022-33307HIGH7.8Memory Corruption due to double free in automotive when a bad HLOS address for one of the lists to be mapped is passed.
CVE-2022-33303MEDIUM5.5Transient DOS due to uncontrolled resource consumption in Linux kernel when malformed messages are sent from the Gunyah ...
CVE-2022-33267HIGH7.8Memory corruption in Linux while sending DRM request.
CVE-2022-33264HIGH7.8Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.
CVE-2022-33263HIGH7.8Memory corruption due to use after free in Core when multiple DCI clients register and deregister.
CVE-2022-33251HIGH7.5Transient DOS due to reachable assertion in Modem because of invalid network configuration.
CVE-2022-33240HIGH7.8Memory corruption in Audio due to incorrect type cast during audio use-cases.
CVE-2022-33230HIGH7.8Memory corruption in FM Host due to buffer copy without checking the size of input in FM Host
CVE-2022-33227HIGH7.8Memory corruption in Linux android due to double free while calling unregister provider after register call.
CVE-2022-33226HIGH7.8Memory corruption due to buffer copy without checking the size of input in Core while processing ioctl commands from dia...
CVE-2022-33224HIGH7.8Memory corruption in core due to buffer copy without check9ing the size of input while processing ioctl queries.
CVE-2022-22076MEDIUM5.5information disclosure due to cryptographic issue in Core during RPMB read request.
CVE-2022-22060HIGH7.5Assertion occurs while processing Reconfiguration message due to improper validation
CVE-2022-48448MEDIUM5.5In telephony service, there is a possible missing permission check. This could lead to local denial of service with no a...
CVE-2022-48447MEDIUM5.5In telephony service, there is a possible missing permission check. This could lead to local denial of service with no a...
CVE-2022-48446MEDIUM5.5In telephony service, there is a possible missing permission check. This could lead to local denial of service with no a...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now