ZeroHour

CVE-2021-35079

CVSS 3.1
5.5 medium
EPSS
<1%p3
Published
()
Modified
Description

Improper validation of permissions for third party application accessing Telephony service API can lead to information disclosure in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

Vendors
qualcomm
Products
apq8053 firmware, aqt1000 firmware, msm8953 firmware, qca6390 firmware, qca6391 firmware, qca6420 firmware, qca6426 firmware, qca6430 firmware, qca6436 firmware, qcm4290 firmware, qcs4290 firmware, qcs603 firmware
Weakness
CWE-281
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.