CVE-2021-30260
Severity:
HIGH
Type:
CWE-190
Integer Overflow or Wraparound
Publication date:
17/09/2021
Last modified:
20/10/2021
Description
Possible Integer overflow to buffer overflow issue can occur due to improper validation of input parameters when extscan hostlist configuration command is received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
4.60
Severity 2.0
Medium
Vulnerable products and versions
- cpe:2.3:o:qualcomm:apq8009_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:h:qualcomm:apq8009:-:*:*:*:*:*:*:*
- cpe:2.3:o:qualcomm:apq8017_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:h:qualcomm:apq8017:-:*:*:*:*:*:*:*
- cpe:2.3:o:qualcomm:apq8053_firmware:-:*:*:*:*:*:*:*
To consult the complete list of products and versions see this page