CVE-2021-35113

EUVD-2021-21757
Possible authentication bypass due to improper order of signature verification and hashing in the signature verification call in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.3 HIGH
PHYSICAL
LOW
NONE
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
qualcommCNA
7.3 HIGH
PHYSICAL
LOW
NONE
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 9%
Affected Products (NVD)
VendorProductVersion
qualcommaqt1000_firmware
-
qualcommcsrb31024_firmware
-
qualcommqca6174a_firmware
-
qualcommqca6310_firmware
-
qualcommqca6335_firmware
-
qualcommqca6420_firmware
-
qualcommqca6430_firmware
-
qualcommqca6564au_firmware
-
qualcommqca6574au_firmware
-
qualcommqca6595au_firmware
-
qualcommqca6696_firmware
-
qualcommqca9377_firmware
-
qualcommqcs410_firmware
-
qualcommqcs610_firmware
-
qualcommsa415m_firmware
-
qualcommsd_675_firmware
-
qualcommsd429_firmware
-
qualcommsd675_firmware
-
qualcommsd678_firmware
-
qualcommsd720g_firmware
-
qualcommsd730_firmware
-
qualcommsd7c_firmware
-
qualcommsd845_firmware
-
qualcommsd850_firmware
-
qualcommsd855_firmware
-
qualcommsdm429w_firmware
-
qualcommsdx24_firmware
-
qualcommsdx50m_firmware
-
qualcommsdx55_firmware
-
qualcommsdx55m_firmware
-
qualcommsm6250_firmware
-
qualcommsm6250p_firmware
-
qualcommwcd9340_firmware
-
qualcommwcd9341_firmware
-
qualcommwcd9370_firmware
-
qualcommwcd9371_firmware
-
qualcommwcd9375_firmware
-
qualcommwcd9380_firmware
-
qualcommwcn3620_firmware
-
qualcommwcn3660b_firmware
-
qualcommwcn3950_firmware
-
qualcommwcn3980_firmware
-
qualcommwcn3988_firmware
-
qualcommwcn3990_firmware
-
qualcommwcn3991_firmware
-
qualcommwcn3998_firmware
-
qualcommwsa8810_firmware
-
qualcommwsa8815_firmware
-
𝑥
= Vulnerable software versions