ZeroHour

CVE-2020-3617

CVSS 3.1
7.1 high
EPSS
<1%p13
Published
()
Modified
Description

u'Buffer over-read Issue in Q6 testbus framework due to diag packet length is not completely validated before accessing the field and leads to Information disclosure.' in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in Kamorta, Nicobar, QCS605, QCS610, Rennell, SC7180, SDA660, SDM630, SDM636, SDM660, SDM670, SDM710, SM6150, SM7150, SM8150, SXR1130

Vendors
qualcomm
Products
kamorta firmware, nicobar firmware, qcs605 firmware, qcs610 firmware, rennell firmware, sc7180 firmware, sda660 firmware, sdm630 firmware, sdm636 firmware, sdm660 firmware, sdm670 firmware, sdm710 firmware
Weakness
CWE-20, CWE-125
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

In the news

No ingested article mentions this CVE yet.