CVE-2021-1961
MEDIUMQualcomm Snapdragon Firmware - Buffer Overflow via Unchecked Offset Length
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-1961. PoCs published by tamirzb.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2021-1961, targeting a vulnerability in Qualcomm's TrustZone. The exploit leverages a memory corruption issue in the QSEECom API to achieve arbitrary kernel read/write, leading to privilege escalation and SELinux bypass.
Description
Possible buffer overflow due to lack of offset length check while updating the buffer value in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Exploits (1)
This repository contains a functional exploit for CVE-2021-1961, targeting a vulnerability in Qualcomm's TrustZone. The exploit leverages a memory corruption issue in the QSEECom API to achieve arbitrary kernel read/write, leading to privilege escalation and SELinux bypass.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H