CVE-2020-11140
—CVSS 3.1
9.8 critical
EPSS
1%p62
Published
()
Modified
Description
Out of bound memory access during music playback with ALAC modified content due to improper validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
- Vendors
- qualcomm
- Products
- apq8017, apq8037, apq8052, apq8053, apq8056, apq8062, apq8064au, apq8076, apq8084, apq8096au, aqt1000, ar8031
- Weakness
- CWE-787
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.