CVE-2021-1909

Published at:
2021-09-09T08:15:07.690

Global infos:

Buffer overflow occurs in trusted applications due to lack of length check of parameters in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

CVE Status: Modified

References:

  • [email protected]
  • af854a3a-2127-422b-91ae-364da2661108
  • Metrics:

    AttributeValue
    Attack ComplexityLOW
    Attack VectorLOCAL
    Availability ImpactLOW
    Base Score7.3
    Base SeverityHIGH
    Confidentiality ImpactHIGH
    Integrity ImpactLOW
    Privileges RequiredNONE
    ScopeUNCHANGED
    User InteractionNONE
    Vector StringCVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
    Exploitability Score2.5
    Impact Score4.7
    Source[email protected]
    TypeSecondary

    Links:

    Exploit-db
    Github