Use-after-free in Qualcomm products - CVE-2022-25693
Published: September 8, 2022
Vulnerability details
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a use-after-free error within the Graphics component. A remote attacker can trick the victim to open a specially crafted file, trigger a use-after-free error and execute arbitrary code on the system.
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.
Affected software
WCD9370
WCD9375
WCD9380
WCD9385
WCN6750
WCN6855
WCN6856
WCN7851
WSA8830
WSA8835
SM7450
SM8475
SM8475P
WSA8832
Google Android