8.4
CWE
129
Advisory Published
Updated

CVE-2021-35126: Out-of-bounds Read

First published: Tue Jun 14 2022(Updated: )

Memory corruption in DSP service due to improper validation of input parameters in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

Credit: product-security@qualcomm.com

Affected SoftwareAffected VersionHow to fix
qualcomm qam8295p firmware
qualcomm qam8295p
qualcomm qca6391 firmware
qualcomm qca6391
qualcomm qca6696 firmware
qualcomm qca6696
Qualcomm qcm6490 firmware
Qualcomm qcm6490
Qualcomm qcs6490 firmware
Qualcomm qcs6490
qualcomm sa8295p firmware
qualcomm sa8295p
qualcomm sd 8 gen1 5g firmware
qualcomm sm8475
qualcomm sd 8cx gen3 firmware
qualcomm sd 8cx gen3
qualcomm sd778g firmware
qualcomm sd778g
qualcomm sd780g firmware
qualcomm sd780g
Qualcomm sd888 firmware
Qualcomm sd888
qualcomm sd888 5g firmware
qualcomm sd888 5g
qualcomm sm7315 firmware
qualcomm sm7315
qualcomm sm7325p firmware
qualcomm sm7325p
Qualcomm wcd9370 firmware
Qualcomm wcd9370
Qualcomm wcd9375 firmware
Qualcomm wcd9375
qualcomm wcd9380 firmware
qualcomm wcd9380
qualcomm wcd9385 firmware
qualcomm wcd9385
Qualcomm wcn6740 firmware
qualcomm wcn6740
qualcomm wcn6750 firmware
qualcomm wcn6750
Qualcomm WCN6850 Firmware
Qualcomm WCN6850 Firmware
Qualcomm WCN6851 Firmware
Qualcomm WCN6851 Firmware
Qualcomm wcn6855 firmware
qualcomm wcn6855
Qualcomm wcn6856 firmware
qualcomm wcn6856
qualcomm wsa8830 firmware
qualcomm wsa8830
qualcomm wsa8835 firmware
qualcomm wsa8835

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2021-35126?

    CVE-2021-35126 has a severity rating of high due to memory corruption issues that can lead to potential exploits.

  • How do I fix CVE-2021-35126?

    To fix CVE-2021-35126, ensure that you apply the latest firmware updates provided by Qualcomm for affected devices.

  • What systems are impacted by CVE-2021-35126?

    CVE-2021-35126 affects various Qualcomm firmware versions including QAM8295P, QCA6391, QCA6696, among others.

  • What are the potential consequences of CVE-2021-35126 exploitation?

    Exploitation of CVE-2021-35126 can lead to unauthorized access and memory corruption, which may destabilize the system.

  • When was CVE-2021-35126 disclosed?

    CVE-2021-35126 was publicly disclosed in April 2022, highlighting vulnerabilities in Snapdragon platforms.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203