ZeroHour

CVE-2020-11140

CVSS 3.1
9.8 critical
EPSS
1%p62
Published
()
Modified
Description

Out of bound memory access during music playback with ALAC modified content due to improper validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

Vendors
qualcomm
Products
apq8017, apq8037, apq8052, apq8053, apq8056, apq8062, apq8064au, apq8076, apq8084, apq8096au, aqt1000, ar8031
Weakness
CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.