VDB

CVE-2021-1924

CVE-2021-1924 PUBLISHED CVSS 9 CRITICAL

Information disclosure through timing and power side-channels during mod exponentiation for RSA-CRT in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

EPSS 0.04% · 14.0th percentile

Risk Scores

CVSS v3.1
9
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
EPSS Score
0.04%
14.0th percentile

Affected Products

VendorProductVersions
qualcommapq8096au_firmware
qualcommipq5018_firmware
qualcommqca9984_firmware
qualcommqca6564a_firmware
qualcommsd678_firmware
qualcommqcn9000_firmware
qualcommsd712_firmware
qualcommsa6155p_firmware
qualcommqca6428_firmware
qualcommqcn9022_firmware
qualcommmsm8208_firmware
qualcommwcd9375_firmware
qualcommwcn3660b_firmware
qualcommmsm8976_firmware
qualcommqcn5154_firmware
qualcommapq8009w_firmware
qualcommwcn6750_firmware
qualcommqca9367_firmware
qualcommqca9980_firmware
qualcommapq8037_firmware

…and 298 more

Timeline

  • Nov 1, 2021 CVE Published
  • Nov 12, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Mar 3, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Apr 27, 2022 EPSS Score
  • Jun 22, 2022 EPSS Score
  • Aug 17, 2022 EPSS Score
  • Oct 11, 2022 EPSS Score
  • Jan 30, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Mar 27, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›