PT-2022-10447 · Qualcomm · Snapdragon

Published

2022-09-02

·

Updated

2023-04-19

·

CVE-2021-35134

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon (affected versions not specified)
Description The issue arises due to insufficient validation of ELF headers, leading to an incorrect calculation of buffer size in the boot process. This can result in memory corruption in various Snapdragon components, including Snapdragon Connectivity, Snapdragon Industrial IOT, and Snapdragon Mobile.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2021-35134

Affected Products

Snapdragon