8.4
CWE
129
Advisory Published
Updated

CVE-2021-35126: Out-of-bounds Read

First published: Tue Jun 14 2022(Updated: )

Memory corruption in DSP service due to improper validation of input parameters in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

Credit: product-security@qualcomm.com

Affected SoftwareAffected VersionHow to fix
Qualcomm QAM8295P
Qualcomm QAM8295P
Qualcomm QCA6391 Firmware
Qualcomm QCA6391 Firmware
Qualcomm QCA6696 Firmware
Qualcomm QCA6696 Firmware
Qualcomm QCM6490
Qualcomm QCM6490 Firmware
Qualcomm QCS6490 Firmware
Qualcomm QCS6490 Firmware
Qualcomm SA8295P Firmware
Qualcomm SA8295P Firmware
Qualcomm Snapdragon 8 Gen 1 Firmware
Qualcomm SM8475P
Qualcomm Snapdragon 8cx Gen 3 Compute Firmware
qualcomm sd 8cx gen3 firmware
Qualcomm SD778G Firmware
Qualcomm Snapdragon 778G
Qualcomm Snapdragon 780G Firmware
Qualcomm Snapdragon 780G
Qualcomm Snapdragon 888 Firmware
Qualcomm Snapdragon 888 Firmware
Qualcomm Snapdragon 888 5G Firmware
Qualcomm Snapdragon 888 5G
Qualcomm SM7315
Qualcomm SM7315 Firmware
Qualcomm SM7325P Firmware
Qualcomm SM7325P Firmware
Qualcomm WCD9370 Firmware
Qualcomm WCD9370 Firmware
Qualcomm WCD9375
Qualcomm WCD9375 Firmware
Qualcomm WCD9380
Qualcomm WCD9380 Firmware
Qualcomm WCD9385
Qualcomm WCD9385 Firmware
Qualcomm WCN6740 Firmware
Qualcomm WCN6740 Firmware
Qualcomm WCN6750 Firmware
Qualcomm WCN6750 Firmware
Qualcomm WCN6850 Firmware
Qualcomm WCN6850 Firmware
Qualcomm WCN6851 Firmware
Qualcomm WCN6851 Firmware
Qualcomm WCN6855 Firmware
Qualcomm WCN6855 Firmware
Qualcomm WCN6856 Firmware
Qualcomm WCN6856 Firmware
Qualcomm WSA8830
Qualcomm WSA8830
Qualcomm WSA8835
Qualcomm WSA8835 Firmware

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2021-35126?

    CVE-2021-35126 has a severity rating of high due to memory corruption issues that can lead to potential exploits.

  • How do I fix CVE-2021-35126?

    To fix CVE-2021-35126, ensure that you apply the latest firmware updates provided by Qualcomm for affected devices.

  • What systems are impacted by CVE-2021-35126?

    CVE-2021-35126 affects various Qualcomm firmware versions including QAM8295P, QCA6391, QCA6696, among others.

  • What are the potential consequences of CVE-2021-35126 exploitation?

    Exploitation of CVE-2021-35126 can lead to unauthorized access and memory corruption, which may destabilize the system.

  • When was CVE-2021-35126 disclosed?

    CVE-2021-35126 was publicly disclosed in April 2022, highlighting vulnerabilities in Snapdragon platforms.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203