PT-2022-9956 · Qualcomm · Snapdragon Industrial Iot+8

Published

2022-01-03

·

Updated

2022-01-12

·

CVE-2021-30270

CVSS v3.1

7.3

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon (affected versions not specified)
Description The issue is related to a possible null pointer dereference in the thread profile trap handler. This occurs due to a lack of thread ID validation before dereferencing it. The affected products include Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-30270

Affected Products

Snapdragon
Snapdragon Auto
Snapdragon Compute
Snapdragon Connectivity
Snapdragon Consumer Iot
Snapdragon Industrial Iot
Snapdragon Voice & Music
Snapdragon Wearables
Snapdragon Wired Infrastructure/Networking