CVE-2021-1982

HIGH

Qualcomm AR8035 and related firmware - Denial of Service via NAS OTA Message Input Validation

Title source: llm
STIX 2.1

Description

Possible denial of service scenario due to improper input validation of received NAS OTA message in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

References (1)

Core 1

Scores

CVSS v3 7.5
EPSS 0.0026
EPSS Percentile 49.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-617
Status published
Products (50)
qualcomm/ar8035_firmware
qualcomm/qca6390_firmware
qualcomm/qca6391_firmware
qualcomm/qca6421_firmware
qualcomm/qca6426_firmware
qualcomm/qca6431_firmware
qualcomm/qca6436_firmware
qualcomm/qca6574a_firmware
qualcomm/qca6574au_firmware
qualcomm/qca6595au_firmware
... and 40 more
Published Nov 12, 2021
Tracked Since Feb 18, 2026