Use of Out-of-range Pointer Offset in Qualcomm products - CVE-2021-35098

 

Use of Out-of-range Pointer Offset in Qualcomm products - CVE-2021-35098

Published: May 12, 2022 / Updated: May 12, 2022


Vulnerability identifier: #VU63103
CSH Severity: Low
CVSS v4: 8.4 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-35098
CWE-ID: CWE-823
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local application to escalate privileges on the system.

The vulnerability exists due to an improper validation of session id in PCM routing process. A local appliction can trigger a use of out-of-range pointer offset and escalate privileges on the system.


Affected software

SDX55M
WCD9385
WCD9380
WCD9375
WCD9370
WCD9341
WCD9335
WCD9326
SM7325P
SM7250P
SDXR2 5G
WCN3615
SDX12
SD888 5G
SD870
SD865 5G
SD780G
SD778G
SD768G
WCN3998
WSA8835
WSA8830
WSA8815
WSA8810
WCN6856
WCN6855
WCN6851
WCN6850
WCN6750
WCN6740
SD765G
WCN3991
WCN3990
WCN3988
WCN3980
WCN3950
WCN3680B
WCN3680
WCN3660B
WCN3620
QCA6390
QCM6125
QCM4290
QCA6574A
QCA6436
QCA6430
QCA6426
QCA6420
QCA6391
CSRA6640
CSRA6620
AR8031
AQT1000
Qualcomm215
SD765
SD750G
SD695
SD690 5G
SD680
SD662
SD480
SD460
SD429
SA515M
QRB5165N
QRB5165M
QRB5165
QCS6125
QCS610
QCS603
QCS4290
QCS410
SDX55
SDM429W
SD855
QCA9377
QCA6574AU
QCS405
QCA6174A
MSM8953
MDM9650
MDM9640
MDM9150
APQ8096AU
APQ8053
QCS605

How to mitigate CVE-2021-35098

Install updates from vendor's website.


External References

Related Security Bulletins