CVE-2021-30339 PUBLISHED CVSS 9 CRITICAL

Reading PRNG output may lead to improper key generation due to lack of buffer validation in Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

EPSS 0.04% · 11.5th percentile

Risk Scores

CVSS v3.1
9
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
EPSS Score
0.04%
11.5th percentile

Affected Products

VendorProductVersions
Qualcomm, Inc.Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking*
qualcommsd888_5g_firmware
qualcommar8035_firmware
qualcommsm7250p_firmware
qualcommwcn3991_firmware
qualcommwcn3998_firmware
qualcommsd690_5g_firmware
qualcommwcn6855_firmware
qualcommwsa8830_firmware
qualcommqca8337_firmware
qualcommqcs4290_firmware
qualcommqcs6490_firmware
qualcommsd780g_firmware
qualcommwcd9370_firmware
qualcommsd662_firmware
qualcommsd750g_firmware
qualcommwcn6740_firmware
qualcommsm7325p_firmware
qualcommwcn6851_firmware
qualcommqca6391_firmware

…and 36 more

Timeline

References

Open in Interactive Console →