Vulnerability Description
Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Aqt1000 Firmware | - |
| Qualcomm | Aqt1000 | - |
| Qualcomm | Ar9380 Firmware | - |
| Qualcomm | Ar9380 | - |
| Qualcomm | Csr8811 Firmware | - |
| Qualcomm | Csr8811 | - |
| Qualcomm | Ipq4018 Firmware | - |
| Qualcomm | Ipq4018 | - |
| Qualcomm | Ipq4019 Firmware | - |
| Qualcomm | Ipq4019 | - |
| Qualcomm | Ipq4028 Firmware | - |
| Qualcomm | Ipq4028 | - |
| Qualcomm | Ipq4029 Firmware | - |
| Qualcomm | Ipq4029 | - |
| Qualcomm | Ipq5010 Firmware | - |
| Qualcomm | Ipq5010 | - |
| Qualcomm | Ipq5018 Firmware | - |
| Qualcomm | Ipq5018 | - |
| Qualcomm | Ipq5028 Firmware | - |
| Qualcomm | Ipq5028 | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/july-2021-bulletinPatchVendor Advisory
- https://www.qualcomm.com/company/product-security/bulletins/july-2021-bulletinPatchVendor Advisory
FAQ
What is CVE-2021-1965?
CVE-2021-1965 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastr...
How severe is CVE-2021-1965?
CVE-2021-1965 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-1965?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Aqt1000 Firmware, Qualcomm Aqt1000, Qualcomm Ar9380 Firmware, Qualcomm Ar9380, Qualcomm Csr8811 Firmware.