Advisory Published
CVE Published
Updated

CVE-2021-30276

First published: Mon Dec 06 2021(Updated: )

Improper access control while doing XPU re-configuration dynamically can lead to unauthorized access to a secure resource in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wired Infrastructure and Networking

Credit: product-security@qualcomm.com

Affected SoftwareAffected VersionHow to fix
Android
Qualcomm AR8035 Firmware
Qualcomm AR8035 Firmware
Qualcomm QCA6390 Firmware
Qualcomm QCA6390 Firmware
Qualcomm QCA6391 Firmware
Qualcomm QCA6391 Firmware
Qualcomm QCA6426 Firmware
Qualcomm QCA6426 Firmware
Qualcomm QCA6436 Firmware
Qualcomm QCA6436 Firmware
Qualcomm QCA8337 Firmware
Qualcomm QCA8337 Firmware
Qualcomm QCA9984
qualcomm qca9984 firmware
Qualcomm QCM2290
Qualcomm QCM2290 Firmware
Qualcomm QCM4290
Qualcomm QCM4290 Firmware
Qualcomm QCM6490
Qualcomm QCM6490 Firmware
Qualcomm QCS2290
Qualcomm QCS2290 Firmware
Qualcomm QCS405 Firmware
Qualcomm QCS405 Firmware
Qualcomm QCS4290 Firmware
Qualcomm QCS4290 Firmware
Qualcomm QCS6490 Firmware
Qualcomm QCS6490 Firmware
Qualcomm QCX315 Firmware
Qualcomm QCX315
Qualcomm QRB5165 Firmware
Qualcomm QRB5165 Firmware
Qualcomm QRB5165 Firmware
qualcomm qrb5165n firmware
qualcomm SM8250 firmware
Qualcomm SM8250
Qualcomm SD460 Firmware
Qualcomm SD460 Firmware
Qualcomm SD 480 Firmware
Qualcomm Snapdragon 480
Qualcomm SDM660 Firmware
Qualcomm Snapdragon 660
Qualcomm SD662 Firmware
Qualcomm SD662 Firmware
Qualcomm Snapdragon 690 5G Firmware
Qualcomm Snapdragon 690 5G Firmware
Qualcomm SD750G Firmware
Qualcomm Snapdragon 750G
Qualcomm SD765 Firmware
Qualcomm Snapdragon 765
Qualcomm SD765 Firmware
Qualcomm Snapdragon 765G
Qualcomm SD768G Firmware
Qualcomm SD768G Firmware
Qualcomm SD778G Firmware
Qualcomm SD778G
Qualcomm Snapdragon 865 5G Firmware
Qualcomm Snapdragon 865 5G Firmware
Qualcomm SD870
Qualcomm SD870 Firmware
Qualcomm Snapdragon 888 5G Firmware
Qualcomm Snapdragon 888 5G
Qualcomm SDX55M Firmware
Qualcomm SDX55 Firmware
Qualcomm SDX55M Firmware
Qualcomm SDX55M Firmware
qualcomm sdx57m firmware
Qualcomm SDX57M
Qualcomm SDXR2 5G Firmware
Qualcomm SDXR2 5G Firmware
Qualcomm SM6225
Qualcomm SM6225-AD Firmware
qualcomm sm6375
qualcomm sm6375 firmware
Qualcomm SM7250 Firmware
Qualcomm SM7250
Qualcomm SM7325P Firmware
Qualcomm SM7325P Firmware
Qualcomm WCD9335 Firmware
Qualcomm WCD9335 Firmware
Qualcomm WCD9370 Firmware
Qualcomm WCD9370 Firmware
Qualcomm WCD9375
Qualcomm WCD9375 Firmware
Qualcomm WCD9380
Qualcomm WCD9380 Firmware
Qualcomm WCD9385
Qualcomm WCD9385 Firmware
Qualcomm WCN3910 Firmware
Qualcomm WCN3910 Firmware
Qualcomm WCN3950 Firmware
Qualcomm WCN3950 Firmware
Qualcomm Wcn3980
qualcomm wcn3980 firmware
qualcomm wcn3988 firmware
Qualcomm WCN3988
Qualcomm WCN3990
Qualcomm WCN3990
Qualcomm WCN3991 Firmware
Qualcomm WCN3991 Firmware
Qualcomm WCN3999 Firmware
Qualcomm WCN3999 Firmware
qualcomm wcn6750 firmware
qualcomm wcn6750 firmware
Qualcomm WCN6850 Firmware
Qualcomm WCN6850 Firmware
Qualcomm WCN6851 Firmware
Qualcomm WCN6851 Firmware
Qualcomm WCN6855 Firmware
Qualcomm WCN6855 Firmware
Qualcomm WCN6856 Firmware
Qualcomm WCN6856
Qualcomm WSA8830
Qualcomm WSA8830
Qualcomm WSA8835
Qualcomm WSA8835 Firmware

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2021-30276?

    CVE-2021-30276 is considered a critical severity vulnerability due to its potential for unauthorized access to secure resources.

  • How do I fix CVE-2021-30276?

    To fix CVE-2021-30276, it is essential to apply the latest firmware updates provided by Qualcomm for the affected devices.

  • Which devices are affected by CVE-2021-30276?

    CVE-2021-30276 affects various Qualcomm chipsets and firmware, including devices running Android and specific Qualcomm firmware versions.

  • What are the potential impacts of CVE-2021-30276?

    The potential impacts of CVE-2021-30276 include unauthorized access to sensitive data and critical system resources, which could compromise device integrity.

  • Has CVE-2021-30276 been exploited in the wild?

    As of now, there are no documented instances of CVE-2021-30276 being exploited in the wild, but the vulnerability remains a significant risk.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203