CVE-2021-30298

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
03/01/2022
Last modified:
12/01/2022

Description

Possible out of bound access due to improper validation of item size and DIAG memory pools data while switching between USB and PCIE interface in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:qualcomm:ar8031_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:ar8031:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:ar8035_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:ar8035:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:csra6620_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:csra6620:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:csra6640_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:csra6640:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fsm10055_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fsm10055:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fsm10056_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fsm10056:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:ipq8072a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:ipq8072a:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:ipq8074a_firmware:-:*:*:*:*:*:*:*