6.5
CVE-2021-1918
- EPSS 0.05%
- Veröffentlicht 03.01.2022 08:15:07
- Zuletzt bearbeitet 22.05.2025 19:15:23
- Quelle product-security@qualcomm.com
- Teams Watchlist Login
- Unerledigt Login
Improper handling of resource allocation in virtual machines can lead to information exposure in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qualcomm ≫ Qca6391 Firmware Version-
Qualcomm ≫ Qcm6490 Firmware Version-
Qualcomm ≫ Qcs6490 Firmware Version-
Qualcomm ≫ Qrb5165 Firmware Version-
Qualcomm ≫ Qrb5165n Firmware Version-
Qualcomm ≫ Sd690 5g Firmware Version-
Qualcomm ≫ Sd750g Firmware Version-
Qualcomm ≫ Sd765 Firmware Version-
Qualcomm ≫ Sd765g Firmware Version-
Qualcomm ≫ Sd768g Firmware Version-
Qualcomm ≫ Sd778g Firmware Version-
Qualcomm ≫ Sd888 5g Firmware Version-
Qualcomm ≫ Sm7250p Firmware Version-
Qualcomm ≫ Sm7325p Firmware Version-
Qualcomm ≫ Wcd9370 Firmware Version-
Qualcomm ≫ Wcd9375 Firmware Version-
Qualcomm ≫ Wcd9380 Firmware Version-
Qualcomm ≫ Wcd9385 Firmware Version-
Qualcomm ≫ Wcn3988 Firmware Version-
Qualcomm ≫ Wcn3991 Firmware Version-
Qualcomm ≫ Wcn3998 Firmware Version-
Qualcomm ≫ Wcn6750 Firmware Version-
Qualcomm ≫ Wcn6850 Firmware Version-
Qualcomm ≫ Wcn6851 Firmware Version-
Qualcomm ≫ Wcn6855 Firmware Version-
Qualcomm ≫ Wcn6856 Firmware Version-
Qualcomm ≫ Wsa8810 Firmware Version-
Qualcomm ≫ Wsa8815 Firmware Version-
Qualcomm ≫ Wsa8830 Firmware Version-
Qualcomm ≫ Wsa8835 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.05% | 0.126 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 6.5 | 2 | 4 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
|
nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:P/I:N/A:N
|
product-security@qualcomm.com | 6.5 | 2 | 4 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
|
CWE-668 Exposure of Resource to Wrong Sphere
The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.