Improper SMMU Configuration in Qualcomm Snapdragon Products
CVE-2021-30345

6.5MEDIUM

Summary

The configuration issue within the SMMU (System Memory Management Unit) in various Qualcomm Snapdragon products allows unauthorized access to secure resources. This vulnerability exposes devices to potential exploitation, where attackers could gain access to sensitive data or control over system functions, underscoring the need for swift remediation to ensure security.

Affected Version(s)

Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking AR8035, QCA9984, QCM2290, QCM4290, QCS2290, QCS405, QCS4290, SD460, SD480, SD662, SD680, SM6375, SW5100, SW5100P, WCD9370, WCD9375, WCD9385, WCN3910, WCN3950, WCN3980, WCN3988, WCN3991, WCN3998, WCN3999, WSA8810, WSA8815, WSA8830, WSA8835

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.