CVE-2022-22071
악용 확인 Qualcomm Multiple Chipsets Use-After-Free Vulnerability
악용 여부
악용 확인
2023-12-05
2023-12-26
CISA 미확인
Qualcomm Multiple Chipsets
심각도 (발행처 발표값)
높음7.8
3.1
NVD (미국 NIST)
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
악용 확률 (EPSS)
0.5%
0.46%
38.0%
2026-09-04
한국어 공식 권고
CISA 원문
Multiple Qualcomm chipsets contain a use-after-free vulnerability when process shell memory is freed using IOCTL munmap call and process initialization is in progress.— CISA KEV · shortDescription 원문
Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.— CISA KEV · requiredAction 원문
취약점 설명 (NVD 원문)
Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
CWE-416 CWE-416
이 페이지는 조치 지시가 아닙니다. 영향 범위와 패치 버전은 제품·구성에 따라 다르므로, 반드시 공급사 공식 권고와 NVD 원문의 참조 링크를 확인하세요.