Reachable Assertion in Qualcomm products - CVE-2021-30273
Published: December 7, 2021
Vulnerability identifier: #VU58573
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-30273
CWE-ID: CWE-617
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a reachable assertion in Data Modem. A remote attacker can cause a denial of service condition on the target system.
Affected software
SD429
SDW2500
SDA429W
SD720G
SD678
SD 8CX
SD 675
SA8195P
SA8155P
SA8150P
SA8145P
WCD9380
WCN3991
WCN3990
WCN3988
WCN3980
WCN3950
WCN3660B
WCN3620
WCN3610
WCD9375
WCD9370
WCD9340
WCD9335
WCD9330
WCD9306
SM6250P
SM6250
MDM9250
QCA4004
MDM9628
MDM9615
QCA6564A
MDM9215
MDM9207
MDM9205
MDM8207
CSRB31024
AR6003
QCA9367
SA6150P
SA6145P
SA415M
QSW8573
QET4101
QCS610
QCS410
APQ8009W
QCA6696
QCA6595AU
QCA6584AU
QCA6584
QCA6574A
QCA6574
QCA6564AU
SDX20
SDM429W
SD730
SD675
SD665
SDX24
SD210
SD205
SA6155P
QCA6174A
MSM8996AU
MSM8909W
MDM9650
MDM9640
MDM9607
MDM9206
APQ8096AU
QCA9377
QCA6574AU
SDW2500
SDA429W
SD720G
SD678
SD 8CX
SD 675
SA8195P
SA8155P
SA8150P
SA8145P
WCD9380
WCN3991
WCN3990
WCN3988
WCN3980
WCN3950
WCN3660B
WCN3620
WCN3610
WCD9375
WCD9370
WCD9340
WCD9335
WCD9330
WCD9306
SM6250P
SM6250
MDM9250
QCA4004
MDM9628
MDM9615
QCA6564A
MDM9215
MDM9207
MDM9205
MDM8207
CSRB31024
AR6003
QCA9367
SA6150P
SA6145P
SA415M
QSW8573
QET4101
QCS610
QCS410
APQ8009W
QCA6696
QCA6595AU
QCA6584AU
QCA6584
QCA6574A
QCA6574
QCA6564AU
SDX20
SDM429W
SD730
SD675
SD665
SDX24
SD210
SD205
SA6155P
QCA6174A
MSM8996AU
MSM8909W
MDM9650
MDM9640
MDM9607
MDM9206
APQ8096AU
QCA9377
QCA6574AU
How to mitigate CVE-2021-30273
Install updates from vendor's website.