CVE-2022-40504
📋 TL;DR
This vulnerability allows a denial-of-service (DoS) attack on mobile devices by sending a specially crafted Downlink Data Indication message to the modem. When exploited, it triggers a reachable assertion that crashes the modem, causing temporary loss of cellular connectivity. This affects devices using Qualcomm modems with vulnerable firmware.
💻 Affected Systems
- Qualcomm mobile station modems (MSM)
- Snapdragon modems
📦 What is this software?
8905 Firmware by Qualcomm
8909 Firmware by Qualcomm
8909 Firmware by Qualcomm
8917 Firmware by Qualcomm
8920 Firmware by Qualcomm
8940 Firmware by Qualcomm
8953 Firmware by Qualcomm
Snapdragon 630 Mobile Platform Firmware by Qualcomm
View all CVEs affecting Snapdragon 630 Mobile Platform Firmware →
Snapdragon 632 Mobile Platform Firmware by Qualcomm
View all CVEs affecting Snapdragon 632 Mobile Platform Firmware →
Snapdragon 636 Mobile Platform Firmware by Qualcomm
View all CVEs affecting Snapdragon 636 Mobile Platform Firmware →
Snapdragon 7c\+ Gen 3 Compute Firmware by Qualcomm
View all CVEs affecting Snapdragon 7c\+ Gen 3 Compute Firmware →
Snapdragon 8cx Compute Platform Firmware by Qualcomm
View all CVEs affecting Snapdragon 8cx Compute Platform Firmware →
Snapdragon 8cx Compute Platform Firmware by Qualcomm
View all CVEs affecting Snapdragon 8cx Compute Platform Firmware →
Snapdragon 8cx Gen 2 5g Compute Platform Firmware by Qualcomm
View all CVEs affecting Snapdragon 8cx Gen 2 5g Compute Platform Firmware →
Snapdragon 8cx Gen 2 5g Compute Platform Firmware by Qualcomm
View all CVEs affecting Snapdragon 8cx Gen 2 5g Compute Platform Firmware →
Snapdragon Auto 4g Modem Firmware by Qualcomm
Snapdragon Auto 5g Modem Rf Firmware by Qualcomm
View all CVEs affecting Snapdragon Auto 5g Modem Rf Firmware →
Snapdragon W5\+ Gen 1 Wearable Platform Firmware by Qualcomm
View all CVEs affecting Snapdragon W5\+ Gen 1 Wearable Platform Firmware →
Snapdragon X20 Lte Modem Firmware by Qualcomm
Snapdragon X24 Lte Modem Firmware by Qualcomm
Snapdragon X50 5g Modem Rf System Firmware by Qualcomm
View all CVEs affecting Snapdragon X50 5g Modem Rf System Firmware →
Snapdragon X55 5g Modem Rf System Firmware by Qualcomm
View all CVEs affecting Snapdragon X55 5g Modem Rf System Firmware →
Snapdragon X65 5g Modem Rf System Firmware by Qualcomm
View all CVEs affecting Snapdragon X65 5g Modem Rf System Firmware →
Snapdragon X70 Modem Rf System Firmware by Qualcomm
View all CVEs affecting Snapdragon X70 Modem Rf System Firmware →
Snapdragon Xr1 Platform Firmware by Qualcomm
⚠️ Risk & Real-World Impact
Worst Case
Permanent modem failure requiring hardware replacement or persistent cellular service disruption across an entire network segment.
Likely Case
Temporary loss of cellular connectivity (voice/data) until device reboots, affecting individual devices or small groups.
If Mitigated
Brief service interruption with automatic modem recovery, minimal user impact.
🎯 Exploit Status
Exploitation requires sending malicious Downlink Data Indication messages via cellular network, which requires access to network infrastructure or ability to spoof network messages.
🛠️ Fix & Mitigation
✅ Official Fix
Patch Version: Firmware updates specified in May 2023 Qualcomm security bulletin
Vendor Advisory: https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin
Restart Required: Yes
Instructions:
1. Check with device manufacturer for firmware updates. 2. Apply Qualcomm-provided modem firmware patches. 3. Reboot device after update. 4. Verify modem functionality post-update.
🔧 Temporary Workarounds
Network filtering
allImplement network-level filtering of Downlink Data Indication messages at cellular infrastructure level
🧯 If You Can't Patch
- Monitor for unusual modem resets or cellular connectivity drops
- Implement network segmentation to limit potential attack surface
🔍 How to Verify
Check if Vulnerable:
Check modem firmware version against Qualcomm's patched versions in security bulletin
Check Version:
Device-specific commands vary by manufacturer; typically in device settings or diagnostic menus
Verify Fix Applied:
Verify modem firmware has been updated to version containing CVE-2022-40504 fix
📡 Detection & Monitoring
Log Indicators:
- Unexpected modem resets
- Modem assertion failures in system logs
- Cellular connectivity loss events
Network Indicators:
- Unusual Downlink Data Indication message patterns
- Suspicious cellular network traffic
SIEM Query:
Search for modem crash events, cellular service interruptions, or Qualcomm-specific error codes