ZeroHour

CVE-2020-11205

CVSS 3.1
7.8 high
EPSS
<1%p10
Published
()
Modified
Description

u'Possible integer overflow to heap overflow while processing command due to lack of check of packet length received' in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile in QSM8350, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155P, SA8195P, SDX55M, SM8250, SM8350, SM8350P, SXR2130, SXR2130P

Vendors
qualcomm
Products
qsm8350 firmware, sa6145p firmware, sa6150p firmware, sa6155 firmware, sa6155p firmware, sa8150p firmware, sa8155p firmware, sa8195p firmware, sdx55m firmware, sm8250 firmware, sm8350 firmware, sm8350p firmware
Weakness
CWE-190, CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.