First published: Fri Apr 01 2022(Updated: )
Improper handling of multiple session supported by PVM backend can lead to use after free in Snapdragon Auto, Snapdragon Mobile
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm Apq8096au Firmware | ||
Qualcomm Apq8096au | ||
Qualcomm Ar6003 Firmware | ||
Google Android | ||
Qualcomm Mdm8215 Firmware | ||
Qualcomm Mdm8215 | ||
Qualcomm Mdm8215m Firmware | ||
Qualcomm Mdm8215m | ||
Qualcomm Mdm8615m Firmware | ||
Qualcomm Mdm8615m | ||
Qualcomm Mdm9215 Firmware | ||
Qualcomm Mdm9215 | ||
Qualcomm Mdm9310 Firmware | ||
Qualcomm Mdm9310 | ||
Qualcomm Mdm9615 Firmware | ||
Qualcomm Mdm9615 | ||
Qualcomm Mdm9615m Firmware | ||
Qualcomm Mdm9615m | ||
Qualcomm Msm8996au Firmware | ||
Qualcomm Msm8996au | ||
Qualcomm Qca6564a Firmware | ||
Qualcomm Qca6564a | ||
Qualcomm Qca6564au Firmware | ||
Google Android | ||
Qualcomm Qca6574a Firmware | ||
Qualcomm Qca6574a | ||
Qualcomm Qca6574au Firmware | ||
Qualcomm Qca6574au | ||
Google Android | ||
Qualcomm Qca6584au | ||
Qualcomm Qca6696 Firmware | ||
Qualcomm Qca6696 | ||
Qualcomm Sa6145p Firmware | ||
Qualcomm Sa6145p | ||
Qualcomm Sa6150p Firmware | ||
Qualcomm Sa6150p | ||
Qualcomm Sa6155p Firmware | ||
Qualcomm Sa6155p | ||
Qualcomm Sa8145p Firmware | ||
Qualcomm Sa8145p | ||
Qualcomm Sa8150p Firmware | ||
Qualcomm Sa8150p | ||
Google Android | ||
Qualcomm Sa8155p | ||
Qualcomm Sa8195p Firmware | ||
Qualcomm Sa8195p | ||
Qualcomm Sa8540p Firmware | ||
Qualcomm Sa8540p | ||
Qualcomm Sa9000p Firmware | ||
Qualcomm Sa9000p | ||
Qualcomm Sdx55 Firmware | ||
Qualcomm Sdx55 | ||
Google Android | ||
Google Android | ||
Qualcomm Wcd9341 Firmware | ||
Google Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-35115 is a vulnerability in Qualcomm Snapdragon Auto and Snapdragon Mobile that results from improper handling of multiple sessions supported by the PVM backend, leading to a use-after-free vulnerability.
CVE-2021-35115 has a severity rating of 7.8 (high).
CVE-2021-35115 affects Qualcomm Snapdragon Auto and Snapdragon Mobile.
CVE-2021-35115 can be exploited by attackers who are able to send specially crafted packets to the vulnerable system, leading to a use-after-free condition.
Yes, a fix for CVE-2021-35115 is provided by Qualcomm. It is recommended to apply the necessary patches to mitigate the vulnerability.