CVE-2020-3617
—CVSS 3.1
7.1 high
EPSS
<1%p13
Published
()
Modified
Description
u'Buffer over-read Issue in Q6 testbus framework due to diag packet length is not completely validated before accessing the field and leads to Information disclosure.' in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in Kamorta, Nicobar, QCS605, QCS610, Rennell, SC7180, SDA660, SDM630, SDM636, SDM660, SDM670, SDM710, SM6150, SM7150, SM8150, SXR1130
- Vendors
- qualcomm
- Products
- kamorta firmware, nicobar firmware, qcs605 firmware, qcs610 firmware, rennell firmware, sc7180 firmware, sda660 firmware, sdm630 firmware, sdm636 firmware, sdm660 firmware, sdm670 firmware, sdm710 firmware
- Weakness
- CWE-20, CWE-125
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.