CVE-2021-35078: High severity android vulnerability
Possible memory leak due to improper validation of certificate chain length while parsing server certificate chain in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-35078?
CVE-2021-35078 is classified as a medium-severity vulnerability.
What products are affected by CVE-2021-35078?
CVE-2021-35078 affects various Qualcomm firmware used in devices such as Snapdragon Auto, Snapdragon Mobile, and several others.
How do I mitigate CVE-2021-35078?
Mitigation for CVE-2021-35078 typically involves updating to the latest firmware provided by Qualcomm.
What type of vulnerability is CVE-2021-35078?
CVE-2021-35078 is a memory leak vulnerability due to improper validation of certificate chain length.
Can CVE-2021-35078 be exploited remotely?
CVE-2021-35078 may allow an attacker to exploit devices remotely if they can send a malicious certificate.