Vulnerability Name:

CVE-2021-30304 (CCN-211794)

Assigned:2021-10-04
Published:2021-10-04
Updated:2021-10-26
Summary:Possible buffer out of bound read can occur due to improper validation of TBTT count and length while parsing the beacon response in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity
CVSS v3 Severity:9.1 Critical (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H)
7.9 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): None
Availibility (A): High
7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
6.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
CVSS v2 Severity:6.4 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): None
Availibility (A): Partial
7.8 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Type:CWE-125
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2021-30304

Source: XF
Type: UNKNOWN
qualcomm-cve202130304-dos(211794)

Source: CCN
Type: Qualcomm Web site
October 2021 Security Bulletin

Source: CONFIRM
Type: Vendor Advisory
https://www.qualcomm.com/company/product-security/bulletins/october-2021-bulletin

Vulnerable Configuration:Configuration 1:
  • cpe:/o:qualcomm:qca2062_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca2062:-:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/o:qualcomm:qca2064_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca2064:-:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/o:qualcomm:qca2065_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca2065:-:*:*:*:*:*:*:*

  • Configuration 4:
  • cpe:/o:qualcomm:qca2066_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:qca2066:-:*:*:*:*:*:*:*

  • Configuration 5:
  • cpe:/o:qualcomm:sc8280xp_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:sc8280xp:-:*:*:*:*:*:*:*

  • Configuration 6:
  • cpe:/o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcd9380:-:*:*:*:*:*:*:*

  • Configuration 7:
  • cpe:/o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcd9385:-:*:*:*:*:*:*:*

  • Configuration 8:
  • cpe:/o:qualcomm:wcn6850_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn6850:-:*:*:*:*:*:*:*

  • Configuration 9:
  • cpe:/o:qualcomm:wcn6851_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn6851:-:*:*:*:*:*:*:*

  • Configuration 10:
  • cpe:/o:qualcomm:wcn6855_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn6855:-:*:*:*:*:*:*:*

  • Configuration 11:
  • cpe:/o:qualcomm:wcn6856_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wcn6856:-:*:*:*:*:*:*:*

  • Configuration 12:
  • cpe:/o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wsa8830:-:*:*:*:*:*:*:*

  • Configuration 13:
  • cpe:/o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:qualcomm:wsa8835:-:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/h:qualcomm:snapdragon_compute:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:snapdragon_connectivity:-:*:*:*:*:*:*:*
  • OR cpe:/h:qualcomm:snapdragon_consumer_electronics_connectivity:-:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    qualcomm qca2062 firmware -
    qualcomm qca2062 -
    qualcomm qca2064 firmware -
    qualcomm qca2064 -
    qualcomm qca2065 firmware -
    qualcomm qca2065 -
    qualcomm qca2066 firmware -
    qualcomm qca2066 -
    qualcomm sc8280xp firmware -
    qualcomm sc8280xp -
    qualcomm wcd9380 firmware -
    qualcomm wcd9380 -
    qualcomm wcd9385 firmware -
    qualcomm wcd9385 -
    qualcomm wcn6850 firmware -
    qualcomm wcn6850 -
    qualcomm wcn6851 firmware -
    qualcomm wcn6851 -
    qualcomm wcn6855 firmware -
    qualcomm wcn6855 -
    qualcomm wcn6856 firmware -
    qualcomm wcn6856 -
    qualcomm wsa8830 firmware -
    qualcomm wsa8830 -
    qualcomm wsa8835 firmware -
    qualcomm wsa8835 -
    qualcomm snapdragon compute -
    qualcomm snapdragon connectivity -
    qualcomm snapdragon consumer electronics connectivity -