CVE-2021-30325

MEDIUM

Qualcomm Firmware - Out-of-Bounds Memory Access in DCI Resource Allocation

Title source: llm
STIX 2.1

Description

Possible out of bound access of DCI resources due to lack of validation process and resource allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

References (1)

Core 1
Core References

Scores

CVSS v3 6.7
EPSS 0.0005
EPSS Percentile 14.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-129
Status published
Products (50)
qualcomm/apq8096au_firmware
qualcomm/ar8031_firmware
qualcomm/ar8035_firmware
qualcomm/ar9380_firmware
qualcomm/csr8811_firmware
qualcomm/csra6620_firmware
qualcomm/csra6640_firmware
qualcomm/ipq4018_firmware
qualcomm/ipq4019_firmware
qualcomm/ipq4028_firmware
... and 40 more
Published Feb 11, 2022
Tracked Since Feb 18, 2026