Vulnerabilities > CVE-2021-1924 - Information Exposure Through Discrepancy vulnerability in Qualcomm products

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
qualcomm
CWE-203

Summary

Information disclosure through timing and power side-channels during mod exponentiation for RSA-CRT in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

Vulnerable Configurations

Part Description Count
OS
Qualcomm
317
Hardware
Qualcomm
317

Common Weakness Enumeration (CWE)