PT-2022-10412 · Qualcomm · Snapdragon

Chengjia4574

+1

·

Published

2022-06-14

·

Updated

2023-08-08

·

CVE-2021-35092

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon (affected versions not specified)
Description The issue arises from the processing of DCB/AVB algorithm with an invalid queue index from an IOCTL request, potentially leading to arbitrary address modification. This affects various Snapdragon products, including Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, and Snapdragon Voice & Music.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2021-35092

Affected Products

Snapdragon