CVE-2021-30299

Nov. 25, 2024, 7:11 p.m.

6.7
Medium

Description

Possible out of bound access in audio module due to lack of validation of user provided input.

Product(s) Impacted

Vendor Product Versions
Qualcomm
  • Wsa8835 Firmware
  • Wsa8835
  • Wsa8830 Firmware
  • Wsa8830
  • Wsa8815 Firmware
  • Wsa8815
  • Wsa8810 Firmware
  • Wsa8810
  • Wcn6856 Firmware
  • Wcn6856
  • Wcn6855 Firmware
  • Wcn6855
  • Wcn6851 Firmware
  • Wcn6851
  • Wcn6850 Firmware
  • Wcn6850
  • Wcn6750 Firmware
  • Wcn6750
  • Wcn6740 Firmware
  • Wcn6740
  • Wcn3998 Firmware
  • Wcn3998
  • Wcn3991 Firmware
  • Wcn3991
  • Wcn3990 Firmware
  • Wcn3990
  • Wcn3988 Firmware
  • Wcn3988
  • Wcn3980 Firmware
  • Wcn3980
  • Wcn3950 Firmware
  • Wcn3950
  • Wcn3910 Firmware
  • Wcn3910
  • Wcn3660b Firmware
  • Wcn3660b
  • Wcn3620 Firmware
  • Wcn3620
  • Wcn3610 Firmware
  • Wcn3610
  • Wcd9385 Firmware
  • Wcd9385
  • Wcd9380 Firmware
  • Wcd9380
  • Wcd9375 Firmware
  • Wcd9375
  • Wcd9370 Firmware
  • Wcd9370
  • Wcd9341 Firmware
  • Wcd9341
  • Wcd9340 Firmware
  • Wcd9340
  • Wcd9335 Firmware
  • Wcd9335
  • Sm7250p Firmware
  • Sm7250p
  • Sm6375 Firmware
  • Sm6375
  • Sm6225 Firmware
  • Sm6225
  • Sdxr2 5g Firmware
  • Sdxr2 5g
  • Sdx55m Firmware
  • Sdx55m
  • Sdx55 Firmware
  • Sdx55
  • Sda429w Firmware
  • Sda429w
  • Sd888 5g Firmware
  • Sd888 5g
  • Sd870 Firmware
  • Sd870
  • Sd865 5g Firmware
  • Sd865 5g
  • Sd780g Firmware
  • Sd780g
  • Sd768g Firmware
  • Sd768g
  • Sd765g Firmware
  • Sd765g
  • Sd765 Firmware
  • Sd765
  • Sd480 Firmware
  • Sd480
  • Sd210 Firmware
  • Sd210
  • Sd205 Firmware
  • Sd205
  • Sa8195p Firmware
  • Sa8195p
  • Sa8155p Firmware
  • Sa8155p
  • Sa8150p Firmware
  • Sa8150p
  • Sa8145p Firmware
  • Sa8145p
  • Sa6155p Firmware
  • Sa6155p
  • Sa6150p Firmware
  • Sa6150p
  • Sa6145p Firmware
  • Sa6145p
  • Qrb5165n Firmware
  • Qrb5165n
  • Qrb5165m Firmware
  • Qrb5165m
  • Qrb5165 Firmware
  • Qrb5165
  • Qcs6490 Firmware
  • Qcs6490
  • Qcs6125 Firmware
  • Qcs6125
  • Qcs610 Firmware
  • Qcs610
  • Qcs605 Firmware
  • Qcs605
  • Qcs603 Firmware
  • Qcs603
  • Qcs4290 Firmware
  • Qcs4290
  • Qcs410 Firmware
  • Qcs410
  • Qcs405 Firmware
  • Qcs405
  • Qcs2290 Firmware
  • Qcs2290
  • Qcm6490 Firmware
  • Qcm6490
  • Qcm6125 Firmware
  • Qcm6125
  • Qcm4290 Firmware
  • Qcm4290
  • Qcm2290 Firmware
  • Qcm2290
  • Qca8337 Firmware
  • Qca8337
  • Qca6696 Firmware
  • Qca6696
  • Qca6574au Firmware
  • Qca6574au
  • Qca6574a Firmware
  • Qca6574a
  • Qca6564au Firmware
  • Qca6564au
  • Qca6564a Firmware
  • Qca6564a
  • Qca6564 Firmware
  • Qca6564
  • Qca6436 Firmware
  • Qca6436
  • Qca6426 Firmware
  • Qca6426
  • Qca6391 Firmware
  • Qca6391
  • Qca6390 Firmware
  • Qca6390
  • Mdm9150 Firmware
  • Mdm9150
  • Csra6640 Firmware
  • Csra6640
  • Csra6620 Firmware
  • Csra6620
  • Ar8035 Firmware
  • Ar8035
  • Ar8031 Firmware
  • Ar8031
  • Apq8096au Firmware
  • Apq8096au
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -

Weaknesses

Common security weaknesses mapped to this vulnerability.

CWE-20
Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

*CPE(s)

Affected systems and software identified for this CVE.

Type Vendor Product Version Update Edition Language Software Edition Target Software Target Hardware Other Information
o qualcomm wsa8835_firmware - / / / / / / /
h qualcomm wsa8835 - / / / / / / /
o qualcomm wsa8830_firmware - / / / / / / /
h qualcomm wsa8830 - / / / / / / /
o qualcomm wsa8815_firmware - / / / / / / /
h qualcomm wsa8815 - / / / / / / /
o qualcomm wsa8810_firmware - / / / / / / /
h qualcomm wsa8810 - / / / / / / /
o qualcomm wcn6856_firmware - / / / / / / /
h qualcomm wcn6856 - / / / / / / /
o qualcomm wcn6855_firmware - / / / / / / /
h qualcomm wcn6855 - / / / / / / /
o qualcomm wcn6851_firmware - / / / / / / /
h qualcomm wcn6851 - / / / / / / /
o qualcomm wcn6850_firmware - / / / / / / /
h qualcomm wcn6850 - / / / / / / /
o qualcomm wcn6750_firmware - / / / / / / /
h qualcomm wcn6750 - / / / / / / /
o qualcomm wcn6740_firmware - / / / / / / /
h qualcomm wcn6740 - / / / / / / /
o qualcomm wcn3998_firmware - / / / / / / /
h qualcomm wcn3998 - / / / / / / /
o qualcomm wcn3991_firmware - / / / / / / /
h qualcomm wcn3991 - / / / / / / /
o qualcomm wcn3990_firmware - / / / / / / /
h qualcomm wcn3990 - / / / / / / /
o qualcomm wcn3988_firmware - / / / / / / /
h qualcomm wcn3988 - / / / / / / /
o qualcomm wcn3980_firmware - / / / / / / /
h qualcomm wcn3980 - / / / / / / /
o qualcomm wcn3950_firmware - / / / / / / /
h qualcomm wcn3950 - / / / / / / /
o qualcomm wcn3910_firmware - / / / / / / /
h qualcomm wcn3910 - / / / / / / /
o qualcomm wcn3660b_firmware - / / / / / / /
h qualcomm wcn3660b - / / / / / / /
o qualcomm wcn3620_firmware - / / / / / / /
h qualcomm wcn3620 - / / / / / / /
o qualcomm wcn3610_firmware - / / / / / / /
h qualcomm wcn3610 - / / / / / / /
o qualcomm wcd9385_firmware - / / / / / / /
h qualcomm wcd9385 - / / / / / / /
o qualcomm wcd9380_firmware - / / / / / / /
h qualcomm wcd9380 - / / / / / / /
o qualcomm wcd9375_firmware - / / / / / / /
h qualcomm wcd9375 - / / / / / / /
o qualcomm wcd9370_firmware - / / / / / / /
h qualcomm wcd9370 - / / / / / / /
o qualcomm wcd9341_firmware - / / / / / / /
h qualcomm wcd9341 - / / / / / / /
o qualcomm wcd9340_firmware - / / / / / / /
h qualcomm wcd9340 - / / / / / / /
o qualcomm wcd9335_firmware - / / / / / / /
h qualcomm wcd9335 - / / / / / / /
o qualcomm sm7250p_firmware - / / / / / / /
h qualcomm sm7250p - / / / / / / /
o qualcomm sm6375_firmware - / / / / / / /
h qualcomm sm6375 - / / / / / / /
o qualcomm sm6225_firmware - / / / / / / /
h qualcomm sm6225 - / / / / / / /
o qualcomm sdxr2_5g_firmware - / / / / / / /
h qualcomm sdxr2_5g - / / / / / / /
o qualcomm sdx55m_firmware - / / / / / / /
h qualcomm sdx55m - / / / / / / /
o qualcomm sdx55_firmware - / / / / / / /
h qualcomm sdx55 - / / / / / / /
o qualcomm sda429w_firmware - / / / / / / /
h qualcomm sda429w - / / / / / / /
o qualcomm sd888_5g_firmware - / / / / / / /
h qualcomm sd888_5g - / / / / / / /
o qualcomm sd870_firmware - / / / / / / /
h qualcomm sd870 - / / / / / / /
o qualcomm sd865_5g_firmware - / / / / / / /
h qualcomm sd865_5g - / / / / / / /
o qualcomm sd780g_firmware - / / / / / / /
h qualcomm sd780g - / / / / / / /
o qualcomm sd768g_firmware - / / / / / / /
h qualcomm sd768g - / / / / / / /
o qualcomm sd765g_firmware - / / / / / / /
h qualcomm sd765g - / / / / / / /
o qualcomm sd765_firmware - / / / / / / /
h qualcomm sd765 - / / / / / / /
o qualcomm sd480_firmware - / / / / / / /
h qualcomm sd480 - / / / / / / /
o qualcomm sd210_firmware - / / / / / / /
h qualcomm sd210 - / / / / / / /
o qualcomm sd205_firmware - / / / / / / /
h qualcomm sd205 - / / / / / / /
o qualcomm sa8195p_firmware - / / / / / / /
h qualcomm sa8195p - / / / / / / /
o qualcomm sa8155p_firmware - / / / / / / /
h qualcomm sa8155p - / / / / / / /
o qualcomm sa8150p_firmware - / / / / / / /
h qualcomm sa8150p - / / / / / / /
o qualcomm sa8145p_firmware - / / / / / / /
h qualcomm sa8145p - / / / / / / /
o qualcomm sa6155p_firmware - / / / / / / /
h qualcomm sa6155p - / / / / / / /
o qualcomm sa6150p_firmware - / / / / / / /
h qualcomm sa6150p - / / / / / / /
o qualcomm sa6145p_firmware - / / / / / / /
h qualcomm sa6145p - / / / / / / /
o qualcomm qrb5165n_firmware - / / / / / / /
h qualcomm qrb5165n - / / / / / / /
o qualcomm qrb5165m_firmware - / / / / / / /
h qualcomm qrb5165m - / / / / / / /
o qualcomm qrb5165_firmware - / / / / / / /
h qualcomm qrb5165 - / / / / / / /
o qualcomm qcs6490_firmware - / / / / / / /
h qualcomm qcs6490 - / / / / / / /
o qualcomm qcs6125_firmware - / / / / / / /
h qualcomm qcs6125 - / / / / / / /
o qualcomm qcs610_firmware - / / / / / / /
h qualcomm qcs610 - / / / / / / /
o qualcomm qcs605_firmware - / / / / / / /
h qualcomm qcs605 - / / / / / / /
o qualcomm qcs603_firmware - / / / / / / /
h qualcomm qcs603 - / / / / / / /
o qualcomm qcs4290_firmware - / / / / / / /
h qualcomm qcs4290 - / / / / / / /
o qualcomm qcs410_firmware - / / / / / / /
h qualcomm qcs410 - / / / / / / /
o qualcomm qcs405_firmware - / / / / / / /
h qualcomm qcs405 - / / / / / / /
o qualcomm qcs2290_firmware - / / / / / / /
h qualcomm qcs2290 - / / / / / / /
o qualcomm qcm6490_firmware - / / / / / / /
h qualcomm qcm6490 - / / / / / / /
o qualcomm qcm6125_firmware - / / / / / / /
h qualcomm qcm6125 - / / / / / / /
o qualcomm qcm4290_firmware - / / / / / / /
h qualcomm qcm4290 - / / / / / / /
o qualcomm qcm2290_firmware - / / / / / / /
h qualcomm qcm2290 - / / / / / / /
o qualcomm qca8337_firmware - / / / / / / /
h qualcomm qca8337 - / / / / / / /
o qualcomm qca6696_firmware - / / / / / / /
h qualcomm qca6696 - / / / / / / /
o qualcomm qca6574au_firmware - / / / / / / /
h qualcomm qca6574au - / / / / / / /
o qualcomm qca6574a_firmware - / / / / / / /
h qualcomm qca6574a - / / / / / / /
o qualcomm qca6564au_firmware - / / / / / / /
h qualcomm qca6564au - / / / / / / /
o qualcomm qca6564a_firmware - / / / / / / /
h qualcomm qca6564a - / / / / / / /
o qualcomm qca6564_firmware - / / / / / / /
h qualcomm qca6564 - / / / / / / /
o qualcomm qca6436_firmware - / / / / / / /
h qualcomm qca6436 - / / / / / / /
o qualcomm qca6426_firmware - / / / / / / /
h qualcomm qca6426 - / / / / / / /
o qualcomm qca6391_firmware - / / / / / / /
h qualcomm qca6391 - / / / / / / /
o qualcomm qca6390_firmware - / / / / / / /
h qualcomm qca6390 - / / / / / / /
o qualcomm mdm9150_firmware - / / / / / / /
h qualcomm mdm9150 - / / / / / / /
o qualcomm csra6640_firmware - / / / / / / /
h qualcomm csra6640 - / / / / / / /
o qualcomm csra6620_firmware - / / / / / / /
h qualcomm csra6620 - / / / / / / /
o qualcomm ar8035_firmware - / / / / / / /
h qualcomm ar8035 - / / / / / / /
o qualcomm ar8031_firmware - / / / / / / /
h qualcomm ar8031 - / / / / / / /
o qualcomm apq8096au_firmware - / / / / / / /
h qualcomm apq8096au - / / / / / / /

CVSS Score

6.7 / 10

CVSS Data - 3.1

  • Attack Vector: LOCAL
  • Attack Complexity: LOW
  • Privileges Required: HIGH
  • Scope: UNCHANGED
  • Confidentiality Impact: HIGH
  • Integrity Impact: HIGH
  • Availability Impact: HIGH
  • CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

    View Vector String

Timeline

Published: Nov. 22, 2024, 10:15 a.m.
Last Modified: Nov. 25, 2024, 7:11 p.m.

Status : Analyzed

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

product-security@qualcomm.com

*Disclaimer: Some vulnerabilities do not have an associated CPE. To enhance the data, we use AI to infer CPEs based on CVE details. This is an automated process and might not always be accurate.