First published: Tue Jul 13 2021(Updated: )
Possible buffer over read due to lack of length check while flashing meta images in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm PQ8009 Firmware | ||
Qualcomm APQ8009 | ||
Qualcomm AQT1000 Firmware | ||
Qualcomm AQT1000 Firmware | ||
Qualcomm 8909 Firmware | ||
Qualcomm Snapdragon 8909 | ||
Qualcomm QCA-4020 Firmware | ||
Qualcomm QCA-4020-1-217MSP | ||
Qualcomm QCA6174A Firmware | ||
Qualcomm QCA6174A Firmware | ||
Qualcomm QCA6420 Firmware | ||
Qualcomm QCA6420 Firmware | ||
Qualcomm QCA6430 firmware | ||
Qualcomm QCA6430 firmware | ||
Qualcomm QCA9379 | ||
Qualcomm QCA9379 | ||
Qualcomm 215 Mobile Firmware | ||
Qualcomm 215 Firmware | ||
Qualcomm SD 675 Firmware | ||
Qualcomm Snapdragon 675 | ||
Qualcomm 205 Firmware | ||
Qualcomm Snapdragon 205 | ||
Qualcomm SD 210 Firmware | ||
Qualcomm SD210 Firmware | ||
Qualcomm SD 675 Firmware | ||
Qualcomm Snapdragon 675 | ||
Qualcomm SD678 Firmware | ||
Qualcomm SD678 Firmware | ||
Qualcomm Snapdragon 720G Firmware | ||
Qualcomm SD720G Firmware | ||
Qualcomm SD 730 Firmware | ||
Qualcomm Snapdragon 730 | ||
Qualcomm Snapdragon 855 | ||
Qualcomm Snapdragon 855 | ||
Qualcomm SDA429W Firmware | ||
Qualcomm SDA429W Firmware | ||
Qualcomm SDM429W | ||
qualcomm SDM429W firmware | ||
Qualcomm SDX50M Firmware | ||
Qualcomm SDX50M Firmware | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SDX55 Firmware | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SM6250P Firmware | ||
Qualcomm SM6250 Firmware | ||
Qualcomm WCD9326 | ||
Qualcomm WCD9326 Firmware | ||
Qualcomm WCD9341 | ||
Qualcomm WCD9341 Firmware | ||
Qualcomm WCD9370 Firmware | ||
Qualcomm WCD9370 Firmware | ||
Qualcomm WCD9375 | ||
Qualcomm WCD9375 Firmware | ||
Qualcomm WCD9380 | ||
Qualcomm WCD9380 Firmware | ||
Qualcomm WCN3610 Firmware | ||
Qualcomm WCN3610 Firmware | ||
Qualcomm WCN3615 Firmware | ||
Qualcomm WCN3615 Firmware | ||
Qualcomm WCN3620 Firmware | ||
Qualcomm WCN3620 Firmware | ||
Qualcomm WCN3660B | ||
Qualcomm WCN3660B Firmware | ||
Qualcomm WCN3680B Firmware | ||
Qualcomm WCN3680B Firmware | ||
Qualcomm WCN3680B Firmware | ||
Qualcomm WCN3680B Firmware | ||
Qualcomm WCN3950 Firmware | ||
Qualcomm WCN3950 Firmware | ||
Qualcomm Wcn3980 | ||
Qualcomm WCN3980 | ||
Qualcomm WCN3988 Firmware | ||
Qualcomm WCN3988 Firmware | ||
Qualcomm WCN3991 Firmware | ||
Qualcomm WCN3991 Firmware | ||
Qualcomm WCN3998 Firmware | ||
Qualcomm wcn3998 firmware | ||
Qualcomm WSA8810 | ||
Qualcomm WSA8810 Firmware | ||
Qualcomm WSA8815 Firmware | ||
Qualcomm WSA8815 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-1899 is classified as a high-severity vulnerability due to potential impacts from buffer over-read.
To address CVE-2021-1899, update the firmware of affected Qualcomm devices to the latest version provided by the vendor.
CVE-2021-1899 affects various Qualcomm firmware versions across Snapdragon Consumer IOT and Mobile devices.
In CVE-2021-1899, a buffer over-read occurs when memory read operations exceed the allocated buffer size, possibly exposing sensitive data.
Yes, CVE-2021-1899 could potentially be exploited remotely due to its nature in the firmware flashing process.