PT-2022-10415 · Qualcomm · Snapdragon Mobile+1

Published

2022-06-14

·

Updated

2023-08-08

·

CVE-2021-35095

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Snapdragon Connectivity, Snapdragon Mobile (affected versions not specified)
Description The issue is related to improper serialization of message queue client registration, which can cause a race condition. This condition allows multiple gunyah message clients to register with the same label.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2021-35095

Affected Products

Snapdragon Connectivity
Snapdragon Mobile