CVE-2020-11205

u'Possible integer overflow to heap overflow while processing command due to lack of check of packet length received' in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile in QSM8350, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155P, SA8195P, SDX55M, SM8250, SM8350, SM8350P, SXR2130, SXR2130P
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 8%
VendorProductVersion
qualcommqsm8350_firmware
-
qualcommsa6145p_firmware
-
qualcommsa6150p_firmware
-
qualcommsa6155_firmware
-
qualcommsa6155p_firmware
-
qualcommsa8150p_firmware
-
qualcommsa8155p_firmware
-
qualcommsa8195p_firmware
-
qualcommsdx55m_firmware
-
qualcommsm8250_firmware
-
qualcommsm8350_firmware
-
qualcommsm8350p_firmware
-
qualcommsxr2130_firmware
-
qualcommsxr2130p_firmware
-
𝑥
= Vulnerable software versions