CVE-2020-3645

Firmware will hit assert in WLAN firmware If encrypted data length in FILS IE of reassoc response is more than 528 bytes in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ6018, IPQ8074, Kamorta, Nicobar, QCA6390, QCA8081, QCN7605, QCS404, QCS405, QCS605, Rennell, SC7180, SC8180X, SDA845, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
qualcommCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 47%
VendorProductVersion
qualcommipq6018_firmware
-
qualcommipq8074_firmware
-
qualcommkamorta_firmware
-
qualcommnicobar_firmware
-
qualcommqca6390_firmware
-
qualcommqca8081_firmware
-
qualcommqcs404_firmware
-
qualcommqcs405_firmware
-
qualcommrennell_firmware
-
qualcommsc7180_firmware
-
qualcommsc8180x_firmware
-
qualcommsda845_firmware
-
qualcommsdm670_firmware
-
qualcommsdm710_firmware
-
qualcommsdm850_firmware
-
qualcommsm6150_firmware
-
qualcommsm7150_firmware
-
qualcommsm8150_firmware
-
qualcommsxr1130_firmware
-
qualcommsxr2130_firmware
-
qualcommqcn7605_firmware
-
qualcommqcs605_firmware
-
qualcommsdm845_firmware
-
𝑥
= Vulnerable software versions