Vulnerability Description
Possible assertion due to lack of input validation in PUSCH configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Ar6003 Firmware | - |
| Qualcomm | Ar6003 | - |
| Qualcomm | Ar8035 Firmware | - |
| Qualcomm | Ar8035 | - |
| Qualcomm | Csrb31024 Firmware | - |
| Qualcomm | Csrb31024 | - |
| Qualcomm | Fsm10055 Firmware | - |
| Qualcomm | Fsm10055 | - |
| Qualcomm | Mdm9215 Firmware | - |
| Qualcomm | Mdm9215 | - |
| Qualcomm | Mdm9607 Firmware | - |
| Qualcomm | Mdm9607 | - |
| Qualcomm | Mdm9615 Firmware | - |
| Qualcomm | Mdm9615 | - |
| Qualcomm | Mdm9628 Firmware | - |
| Qualcomm | Mdm9628 | - |
| Qualcomm | Mdm9640 Firmware | - |
| Qualcomm | Mdm9640 | - |
| Qualcomm | Mdm9650 Firmware | - |
| Qualcomm | Mdm9650 | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/december-2021-bulletVendor Advisory
- https://www.qualcomm.com/company/product-security/bulletins/december-2021-bulletVendor Advisory
FAQ
What is CVE-2021-30293?
CVE-2021-30293 is a vulnerability with a CVSS score of 7.5 (HIGH). Possible assertion due to lack of input validation in PUSCH configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT
How severe is CVE-2021-30293?
CVE-2021-30293 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-30293?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Ar6003 Firmware, Qualcomm Ar6003, Qualcomm Ar8035 Firmware, Qualcomm Ar8035, Qualcomm Csrb31024 Firmware.