ZeroHour

CVE-2020-11167

CVSS 3.1
9.8 critical
EPSS
1%p67
Published
()
Modified
Description

Memory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

Vendors
qualcomm
Products
apq8009w, apq8017, apq8037, apq8053, apq8064au, apq8096au, aqt1000, msm8909w, msm8917, msm8920, msm8937, msm8940
Weakness
CWE-190, CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.