CVE-2021-35092: Input Validation
Processing DCB/AVB algorithm with an invalid queue index from IOCTL request could lead to arbitrary address modification in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2021-35092?
The severity of CVE-2021-35092 is classified as high due to the potential for arbitrary address modification.
How do I fix CVE-2021-35092?
To fix CVE-2021-35092, update the Qualcomm firmware to the latest version that addresses the vulnerability.
What devices are affected by CVE-2021-35092?
CVE-2021-35092 affects various Qualcomm Snapdragon firmware, including multiple models within the Snapdragon Auto, Compute, and Consumer IoT categories.
What type of vulnerability is CVE-2021-35092?
CVE-2021-35092 is a vulnerability that arises from improper handling of invalid queue indices in IOCTL requests.
What damage could result from exploiting CVE-2021-35092?
Exploiting CVE-2021-35092 could allow an attacker to modify arbitrary memory addresses, potentially leading to device malfunction or unauthorized access.