First published: Fri Apr 01 2022(Updated: )
Improper handling of multiple session supported by PVM backend can lead to use after free in Snapdragon Auto, Snapdragon Mobile
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm apq8096au firmware | ||
Qualcomm apq8096au | ||
qualcomm ar6003 firmware | ||
qualcomm ar6003 | ||
qualcomm mdm8215 firmware | ||
qualcomm mdm8215 | ||
qualcomm mdm8215m firmware | ||
qualcomm mdm8215m | ||
qualcomm mdm8615m firmware | ||
qualcomm mdm8615m | ||
qualcomm mdm9215 firmware | ||
qualcomm mdm9215 | ||
qualcomm mdm9310 firmware | ||
qualcomm mdm9310 | ||
Qualcomm MDM9615 firmware | ||
Qualcomm MDM9615 | ||
qualcomm mdm9615m firmware | ||
qualcomm mdm9615m | ||
Qualcomm MSM8996AU Firmware | ||
Qualcomm MSM8996AU Firmware | ||
Qualcomm qca6564a firmware | ||
Qualcomm qca6564a | ||
qualcomm qca6564au firmware | ||
qualcomm qca6564au | ||
qualcomm qca6574a firmware | ||
qualcomm qca6574a | ||
qualcomm qca6574au firmware | ||
qualcomm qca6574au | ||
qualcomm QCA6584AU firmware | ||
qualcomm QCA6584AU | ||
qualcomm qca6696 firmware | ||
qualcomm qca6696 | ||
Qualcomm sa6145p firmware | ||
Qualcomm sa6145p | ||
Qualcomm sa6150p firmware | ||
Qualcomm sa6150p | ||
Qualcomm Sa6155p Firmware | ||
qualcomm SA6155P | ||
qualcomm sa8145p firmware | ||
qualcomm sa8145p | ||
Qualcomm sa8150p firmware | ||
Qualcomm sa8150p | ||
Qualcomm sa8155p firmware | ||
Qualcomm sa8155p | ||
Qualcomm sa8195p firmware | ||
Qualcomm sa8195p | ||
Qualcomm sa8540p firmware | ||
Qualcomm sa8540p | ||
qualcomm sa9000p firmware | ||
qualcomm sa9000p | ||
Qualcomm sdx55 firmware | ||
Qualcomm sdx55 | ||
Qualcomm sdx55m firmware | ||
Qualcomm sdx55m | ||
qualcomm wcd9341 firmware | ||
qualcomm wcd9341 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-35115 is a vulnerability in Qualcomm Snapdragon Auto and Snapdragon Mobile that results from improper handling of multiple sessions supported by the PVM backend, leading to a use-after-free vulnerability.
CVE-2021-35115 has a severity rating of 7.8 (high).
CVE-2021-35115 affects Qualcomm Snapdragon Auto and Snapdragon Mobile.
CVE-2021-35115 can be exploited by attackers who are able to send specially crafted packets to the vulnerable system, leading to a use-after-free condition.
Yes, a fix for CVE-2021-35115 is provided by Qualcomm. It is recommended to apply the necessary patches to mitigate the vulnerability.