CVE-2021-35129

EUVD-2021-21773
Memory corruption in BT controller due to improper length check while processing vendor specific commands in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Classic Buffer Overflow
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 29%
Affected Products (NVD)
VendorProductVersion
qualcommar8035_firmware
-
qualcommipq5010_firmware
-
qualcommipq5018_firmware
-
qualcommipq5028_firmware
-
qualcommqca2062_firmware
-
qualcommqca2064_firmware
-
qualcommqca2065_firmware
-
qualcommqca2066_firmware
-
qualcommqca6391_firmware
-
qualcommqca8081_firmware
-
qualcommqca8337_firmware
-
qualcommqcc710_firmware
-
qualcommqcm6490_firmware
-
qualcommqcn6023_firmware
-
qualcommqcn6024_firmware
-
qualcommqcn6100_firmware
-
qualcommqcn6102_firmware
-
qualcommqcn6112_firmware
-
qualcommqcn6122_firmware
-
qualcommqcn6132_firmware
-
qualcommqcn9000_firmware
-
qualcommqcn9012_firmware
-
qualcommqcn9022_firmware
-
qualcommqcn9024_firmware
-
qualcommqcn9070_firmware
-
qualcommqcn9072_firmware
-
qualcommqcn9074_firmware
-
qualcommqcn9100_firmware
-
qualcommqcs6490_firmware
-
qualcommsd_8_gen1_5g_firmware
-
qualcommsd_8cx_gen3_firmware
-
qualcommsd888_firmware
-
qualcommsd888_5g_firmware
-
qualcommsdx65_firmware
-
qualcommwcd9370_firmware
-
qualcommwcd9375_firmware
-
qualcommwcd9380_firmware
-
qualcommwcd9385_firmware
-
qualcommwcn6750_firmware
-
qualcommwcn6850_firmware
-
qualcommwcn6851_firmware
-
qualcommwcn6855_firmware
-
qualcommwcn6856_firmware
-
qualcommwsa8830_firmware
-
qualcommwsa8835_firmware
-
𝑥
= Vulnerable software versions