6.7
CVE-2021-35121
- EPSS 0.04%
- Published 14.06.2022 10:15:17
- Last modified 21.11.2024 06:11:58
- Source product-security@qualcomm.com
- Teams watchlist Login
- Open Login
An array index is improperly used to lock and unlock a mutex which can lead to a Use After Free condition In the Synx driver in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
Data is provided by the National Vulnerability Database (NVD)
Qualcomm ≫ Apq8053 Firmware Version-
Qualcomm ≫ Msm8953 Firmware Version-
Qualcomm ≫ Qca6390 Firmware Version-
Qualcomm ≫ Qca6391 Firmware Version-
Qualcomm ≫ Qca6426 Firmware Version-
Qualcomm ≫ Qca6436 Firmware Version-
Qualcomm ≫ Qcm2290 Firmware Version-
Qualcomm ≫ Qcm4290 Firmware Version-
Qualcomm ≫ Qcs2290 Firmware Version-
Qualcomm ≫ Qcs4290 Firmware Version-
Qualcomm ≫ Qrb5165 Firmware Version-
Qualcomm ≫ Qrb5165m Firmware Version-
Qualcomm ≫ Qrb5165n Firmware Version-
Qualcomm ≫ Sd460 Firmware Version-
Qualcomm ≫ Sd662 Firmware Version-
Qualcomm ≫ Sd680 Firmware Version-
Qualcomm ≫ Sd690 5g Firmware Version-
Qualcomm ≫ Sd750g Firmware Version-
Qualcomm ≫ Sd765 Firmware Version-
Qualcomm ≫ Sd765g Firmware Version-
Qualcomm ≫ Sd768g Firmware Version-
Qualcomm ≫ Sd865 5g Firmware Version-
Qualcomm ≫ Sd870 Firmware Version-
Qualcomm ≫ Sdx55m Firmware Version-
Qualcomm ≫ Sdxr2 5g Firmware Version-
Qualcomm ≫ Sm7250p Firmware Version-
Qualcomm ≫ Wcd9326 Firmware Version-
Qualcomm ≫ Wcd9370 Firmware Version-
Qualcomm ≫ Wcd9375 Firmware Version-
Qualcomm ≫ Wcd9380 Firmware Version-
Qualcomm ≫ Wcd9385 Firmware Version-
Qualcomm ≫ Wcn3615 Firmware Version-
Qualcomm ≫ Wcn3680b Firmware Version-
Qualcomm ≫ Wcn3910 Firmware Version-
Qualcomm ≫ Wcn3950 Firmware Version-
Qualcomm ≫ Wcn3988 Firmware Version-
Qualcomm ≫ Wcn3991 Firmware Version-
Qualcomm ≫ Wcn3998 Firmware Version-
Qualcomm ≫ Wcn6850 Firmware Version-
Qualcomm ≫ Wcn6851 Firmware Version-
Qualcomm ≫ Wsa8810 Firmware Version-
Qualcomm ≫ Wsa8815 Firmware Version-
Qualcomm ≫ Wsa8830 Firmware Version-
Qualcomm ≫ Wsa8835 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.086 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
product-security@qualcomm.com | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-129 Improper Validation of Array Index
The product uses untrusted input when calculating or using an array index, but the product does not validate or incorrectly validates the index to ensure the index references a valid position within the array.