CVE-2021-35116

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
14/06/2022
Last modified:
19/04/2023

Description

APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:qualcomm:apq8009_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8009:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:apq8009w_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8009w:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:apq8096au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8096au:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:aqt1000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:aqt1000:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:csrb31024_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:csrb31024:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:mdm9607_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9607:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:mdm9626_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9626:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:mdm9628_firmware:-:*:*:*:*:*:*:*