ZeroHour

CVE-2020-3702

CVSS 3.1
6.5 medium
EPSS
<1%p27
Published
()
Modified
Description

u'Specifically timed and handcrafted traffic can cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure over the air for a discrete set of traffic' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8053, IPQ4019, IPQ8064, MSM8909W, MSM8996AU, QCA9531, QCN5502, QCS405, SDX20, SM6150, SM7150

Vendors
qualcommdebianarista
Products
apq8053 firmware, ipq4019 firmware, ipq8064 firmware, msm8909w firmware, msm8996au firmware, qca9531 firmware, qcn5502 firmware, qcs405 firmware, sdx20 firmware, sm6150 firmware, sm7150 firmware, debian linux
Weakness
CWE-319
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news