CVE-2021-1965
9.8
CRITICAL · CVSS 3.1 · EPSS 3% (pctl 87)
In your normal cycle
Critical by CVSS (9.8), but no sign of active exploitation.
Description
Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Scoring
| CVSS | 9.8 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 3.02% — more likely to be exploited than 87% of all CVEs |
| Weakness | CWE-20 |
| On CISA KEV | no |
| Public exploit | none known |
| Published | 2021-07-13 |
| Last modified | 2026-06-17 |
Affected (40)
| Vendor | Product |
|---|---|
| qualcomm | aqt1000 |
| qualcomm | aqt1000 firmware |
| qualcomm | ar9380 |
| qualcomm | ar9380 firmware |
| qualcomm | csr8811 |
| qualcomm | csr8811 firmware |
| qualcomm | ipq4018 |
| qualcomm | ipq4018 firmware |
| qualcomm | ipq4019 |
| qualcomm | ipq4019 firmware |
| qualcomm | ipq4028 |
| qualcomm | ipq4028 firmware |
| qualcomm | ipq4029 |
| qualcomm | ipq4029 firmware |
| qualcomm | ipq5010 |
| qualcomm | ipq5010 firmware |
| qualcomm | ipq5018 |
| qualcomm | ipq5018 firmware |
| qualcomm | ipq5028 |
| qualcomm | ipq5028 firmware |
| qualcomm | ipq6000 |
| qualcomm | ipq6000 firmware |
| qualcomm | ipq6005 |
| qualcomm | ipq6005 firmware |
| qualcomm | ipq6010 |
| qualcomm | ipq6010 firmware |
| qualcomm | ipq6018 |
| qualcomm | ipq6018 firmware |
| qualcomm | ipq6028 |
| qualcomm | ipq6028 firmware |
| qualcomm | ipq8064 |
| qualcomm | ipq8064 firmware |
| qualcomm | ipq8065 |
| qualcomm | ipq8065 firmware |
| qualcomm | ipq8068 |
| qualcomm | ipq8068 firmware |
| qualcomm | ipq8070 |
| qualcomm | ipq8070 firmware |
| qualcomm | ipq8070a |
| qualcomm | ipq8070a firmware |
References
→ the Explorer · watch your stack · NVD