ZeroHour

CVE-2020-11282

CVSS 3.1
7.8 high
EPSS
<1%p8
Published
()
Modified
Description

Improper access control when using mmap with the kgsl driver with a special offset value that can be provided to map the memstore of the GPU to user space in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

Vendors
qualcomm
Products
apq8009, apq8009w, apq8017, apq8037, apq8053, apq8064au, apq8076, apq8096au, aqt1000, ar6003, ar8031, ar8035
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.