VDB

CVE-2021-30261

CVE-2021-30261 PUBLISHED CVSS 8.399999618530273 HIGH

Possible integer and heap overflow due to lack of input command size validation while handling beacon template update command from HLOS in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

EPSS 0.03% · 10.8th percentile

Risk Scores

CVSS 3.1
8.399999618530273
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.03%
10.8th percentile

Affected Products

VendorProductVersions
qualcommsdxr1_firmware
qualcommqca4004_firmware
qualcommsd675_firmware
qualcommwcn6856_firmware
qualcommmdm9206_firmware
qualcommmdm9607_firmware
qualcommsa8155_firmware
qualcommqcs605_firmware
qualcommsdm429w_firmware
qualcommsdx12_firmware
qualcommsa6155p_firmware
qualcommsd678_firmware
qualcommqcs6125_firmware
qualcommqca6574_firmware
qualcommmdm9630_firmware
qualcommqca6174a_firmware
qualcommsd_455_firmware
qualcommsdx20_firmware
qualcommsa515m_firmware
qualcommsdxr2_5g_firmware

…and 163 more

Timeline

  • Aug 3, 2021 CVE Published
  • Sep 17, 2021 EPSS Score
  • Oct 5, 2021 EPSS Score
  • Oct 11, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Jan 10, 2022 EPSS Score
  • Mar 8, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 5, 2022 EPSS Score
  • Jul 1, 2022 EPSS Score
  • Oct 25, 2022 EPSS Score
  • Dec 21, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›