Vulnerability Description
RPM secure Stream can access any secure resource due to improper SMMU configuration and can lead to information disclosure in Snapdragon Industrial IOT, Snapdragon Mobile
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Qcm6125 Firmware | - |
| Qualcomm | Qcm6125 | - |
| Qualcomm | Qcs6125 Firmware | - |
| Qualcomm | Qcs6125 | - |
| Qualcomm | Sd665 Firmware | - |
| Qualcomm | Sd665 | - |
| Qualcomm | Wcd9370 Firmware | - |
| Qualcomm | Wcd9370 | - |
| Qualcomm | Wcd9375 Firmware | - |
| Qualcomm | Wcd9375 | - |
| Qualcomm | Wcn3950 Firmware | - |
| Qualcomm | Wcn3950 | - |
| Qualcomm | Wcn3980 Firmware | - |
| Qualcomm | Wcn3980 | - |
| Qualcomm | Wsa8810 Firmware | - |
| Qualcomm | Wsa8810 | - |
| Qualcomm | Wsa8815 Firmware | - |
| Qualcomm | Wsa8815 | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/april-2022-bulletinVendor Advisory
- https://www.qualcomm.com/company/product-security/bulletins/april-2022-bulletinVendor Advisory
FAQ
What is CVE-2021-35070?
CVE-2021-35070 is a vulnerability with a CVSS score of 6.5 (MEDIUM). RPM secure Stream can access any secure resource due to improper SMMU configuration and can lead to information disclosure in Snapdragon Industrial IOT, Snapdragon Mobile
How severe is CVE-2021-35070?
CVE-2021-35070 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-35070?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Qcm6125 Firmware, Qualcomm Qcm6125, Qualcomm Qcs6125 Firmware, Qualcomm Qcs6125, Qualcomm Sd665 Firmware.