Vulnerability Description
Possible buffer out of bound read can occur due to improper validation of TBTT count and length while parsing the beacon response in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Qca2062 Firmware | - |
| Qualcomm | Qca2062 | - |
| Qualcomm | Qca2064 Firmware | - |
| Qualcomm | Qca2064 | - |
| Qualcomm | Qca2065 Firmware | - |
| Qualcomm | Qca2065 | - |
| Qualcomm | Qca2066 Firmware | - |
| Qualcomm | Qca2066 | - |
| Qualcomm | Sc8280Xp Firmware | - |
| Qualcomm | Sc8280Xp | - |
| Qualcomm | Wcd9380 Firmware | - |
| Qualcomm | Wcd9380 | - |
| Qualcomm | Wcd9385 Firmware | - |
| Qualcomm | Wcd9385 | - |
| Qualcomm | Wcn6850 Firmware | - |
| Qualcomm | Wcn6850 | - |
| Qualcomm | Wcn6851 Firmware | - |
| Qualcomm | Wcn6851 | - |
| Qualcomm | Wcn6855 Firmware | - |
| Qualcomm | Wcn6855 | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/october-2021-bulletiVendor Advisory
- https://www.qualcomm.com/company/product-security/bulletins/october-2021-bulletiVendor Advisory
FAQ
What is CVE-2021-30304?
CVE-2021-30304 is a vulnerability with a CVSS score of 7.5 (HIGH). Possible buffer out of bound read can occur due to improper validation of TBTT count and length while parsing the beacon response in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer El...
How severe is CVE-2021-30304?
CVE-2021-30304 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-30304?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Qca2062 Firmware, Qualcomm Qca2062, Qualcomm Qca2064 Firmware, Qualcomm Qca2064, Qualcomm Qca2065 Firmware.