CVE-2021-30347

CRITICAL

Qualcomm AR8035 Firmware - Time-of-check Time-of-use Race Condition

Title source: llm
STIX 2.1

Description

Improper integrity check can lead to race condition between tasks PDCP and RRC? right after a valid RRC Command packet has been received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

References (1)

Core 1
Core References

Scores

CVSS v3 9.1
EPSS 0.0017
EPSS Percentile 37.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Details

CWE
CWE-367
Status published
Products (50)
qualcomm/ar8035_firmware
qualcomm/qca6390_firmware
qualcomm/qca6391_firmware
qualcomm/qca6426_firmware
qualcomm/qca6436_firmware
qualcomm/qca6574a_firmware
qualcomm/qca6574au_firmware
qualcomm/qca6595au_firmware
qualcomm/qca6696_firmware
qualcomm/qca8081_firmware
... and 40 more
Published Jun 14, 2022
Tracked Since Feb 18, 2026