ZeroHour

CVE-2020-11182

CVSS 3.1
9.8 critical
EPSS
<1%p55
Published
()
Modified
Description

Possible heap overflow while parsing NAL header due to lack of check of length of data received from user in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

Vendors
qualcomm
Products
aqt1000 firmware, pm3003a firmware, pm4125 firmware, pm456 firmware, pm6125 firmware, pm6150 firmware, pm6150a firmware, pm6150l firmware, pm6250 firmware, pm6350 firmware, pm640a firmware, pm640l firmware
Weakness
CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news