CVE-2021-35115

Improper handling of multiple session supported by PVM backend can lead to use after free in Snapdragon Auto, Snapdragon Mobile
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:apq8096au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8096au:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:ar6003_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:ar6003:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:mdm8215_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm8215:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:mdm8215m_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm8215m:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:mdm8615m_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm8615m:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:mdm9215_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9215:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:mdm9310_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9310:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:qualcomm:mdm9615_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9615:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:qualcomm:mdm9615m_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9615m:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:qualcomm:msm8996au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8996au:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:qualcomm:qca6564a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6564a:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:qualcomm:qca6564au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6564au:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:qualcomm:qca6574a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574a:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:qualcomm:qca6584au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6584au:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:qualcomm:qca6696_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6696:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:qualcomm:sa6145p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6145p:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:qualcomm:sa6150p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6150p:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:qualcomm:sa8145p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8145p:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:qualcomm:sa8150p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8150p:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:qualcomm:sa8155p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8155p:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:qualcomm:sa8195p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8195p:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:qualcomm:sa8540p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8540p:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:qualcomm:sa9000p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa9000p:-:*:*:*:*:*:*:*

Configuration 26 (hide)

AND
cpe:2.3:o:qualcomm:sdx55_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdx55:-:*:*:*:*:*:*:*

Configuration 27 (hide)

AND
cpe:2.3:o:qualcomm:sdx55m_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdx55m:-:*:*:*:*:*:*:*

Configuration 28 (hide)

AND
cpe:2.3:o:qualcomm:wcd9341_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9341:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:11

Type Values Removed Values Added
References () https://www.qualcomm.com/company/product-security/bulletins/march-2022-bulletin - Vendor Advisory () https://www.qualcomm.com/company/product-security/bulletins/march-2022-bulletin - Vendor Advisory
CVSS v2 : 4.6
v3 : 7.8
v2 : 4.6
v3 : 8.4

Information

Published : 2022-04-01 05:15

Updated : 2024-11-21 06:11


NVD link : CVE-2021-35115

Mitre link : CVE-2021-35115

CVE.ORG link : CVE-2021-35115


JSON object : View

Products Affected

qualcomm

  • qca6574au_firmware
  • mdm9310_firmware
  • sa8150p_firmware
  • sa8155p
  • mdm9615m
  • qca6564au_firmware
  • mdm9615_firmware
  • sa6155p
  • sa8195p_firmware
  • sa8195p
  • qca6564a_firmware
  • apq8096au
  • sa9000p_firmware
  • sa6145p
  • mdm9615
  • msm8996au
  • qca6696
  • sa8540p
  • mdm8215m_firmware
  • mdm9310
  • qca6564au
  • sa9000p
  • sdx55_firmware
  • sdx55m_firmware
  • qca6584au
  • wcd9341
  • qca6574a
  • sdx55
  • sa6150p
  • mdm9215
  • sa8145p
  • wcd9341_firmware
  • mdm9615m_firmware
  • mdm8615m
  • msm8996au_firmware
  • qca6574a_firmware
  • sa6145p_firmware
  • mdm8215_firmware
  • sa8155p_firmware
  • sa8145p_firmware
  • sa6155p_firmware
  • ar6003
  • qca6584au_firmware
  • sa8540p_firmware
  • qca6696_firmware
  • qca6574au
  • mdm8215m
  • sa6150p_firmware
  • sdx55m
  • mdm8215
  • ar6003_firmware
  • sa8150p
  • mdm9215_firmware
  • apq8096au_firmware
  • qca6564a
  • mdm8615m_firmware
CWE
CWE-416

Use After Free