Vulnerability Description
Improper handling of multiple session supported by PVM backend can lead to use after free in Snapdragon Auto, Snapdragon Mobile
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Apq8096Au Firmware | - |
| Qualcomm | Apq8096Au | - |
| Qualcomm | Ar6003 Firmware | - |
| Qualcomm | Ar6003 | - |
| Qualcomm | Mdm8215 Firmware | - |
| Qualcomm | Mdm8215 | - |
| Qualcomm | Mdm8215M Firmware | - |
| Qualcomm | Mdm8215M | - |
| Qualcomm | Mdm8615M Firmware | - |
| Qualcomm | Mdm8615M | - |
| Qualcomm | Mdm9215 Firmware | - |
| Qualcomm | Mdm9215 | - |
| Qualcomm | Mdm9310 Firmware | - |
| Qualcomm | Mdm9310 | - |
| Qualcomm | Mdm9615 Firmware | - |
| Qualcomm | Mdm9615 | - |
| Qualcomm | Mdm9615M Firmware | - |
| Qualcomm | Mdm9615M | - |
| Qualcomm | Msm8996Au Firmware | - |
| Qualcomm | Msm8996Au | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/march-2022-bulletinVendor Advisory
- https://www.qualcomm.com/company/product-security/bulletins/march-2022-bulletinVendor Advisory
FAQ
What is CVE-2021-35115?
CVE-2021-35115 is a vulnerability with a CVSS score of 8.4 (HIGH). Improper handling of multiple session supported by PVM backend can lead to use after free in Snapdragon Auto, Snapdragon Mobile
How severe is CVE-2021-35115?
CVE-2021-35115 has been rated HIGH with a CVSS base score of 8.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-35115?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Apq8096Au Firmware, Qualcomm Apq8096Au, Qualcomm Ar6003 Firmware, Qualcomm Ar6003, Qualcomm Mdm8215 Firmware.