CVE-2021-35093: Medium severity qualcomm csr8510 a10 vulnerability
Published Jan 3, 2022
·Updated
Possible memory corruption in BT controller when it receives an oversized LMP packet over 2-DH1 link and leads to denial of service in BlueCore
Affected Software
4 affected components
Qualcomm Csr8510 A10 Firmware
Qualcomm Csr8510 A10
Qualcomm Csr8811 A12 Firmware
Qualcomm Csr8811 A12
Event History
Jan 3, 2022
CVE Published
via MITRE·07:26 AM
Data Sourced
via MITRE·07:26 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-35093?
The severity level of CVE-2021-35093 is categorized as high due to its potential to cause a denial of service.
2
How do I fix CVE-2021-35093?
To mitigate CVE-2021-35093, update the firmware of affected Qualcomm Bluetooth controllers to the latest version provided by Qualcomm.
3
What are the affected devices in CVE-2021-35093?
CVE-2021-35093 specifically affects Qualcomm CSR8510 A10 and CSR8811 Bluetooth controller firmware.
4
What type of attack does CVE-2021-35093 enable?
CVE-2021-35093 can lead to a denial of service attack by exploiting memory corruption through oversized LMP packets.
5
Is CVE-2021-35093 a hardware or software vulnerability?
CVE-2021-35093 is a firmware vulnerability affecting the software running on Qualcomm Bluetooth chipsets.