CVE-2020-3665

A possible buffer overflow would occur while processing command from firmware due to the group_id obtained from the firmware being out of range in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, APQ8096AU, MDM9206, MDM9207C, MDM9607, MDM9615, MDM9640, MDM9650, MSM8909W, MSM8996, MSM8996AU, QCA6174A, QCA9377, QCA9379, SDM439, SDM636, SDM660, SDX20, SDX24, SM8150
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 37%
VendorProductVersion
qualcommapq8009_firmware
-
qualcommapq8053_firmware
-
qualcommapq8096au_firmware
-
qualcommmdm9206_firmware
-
qualcommmdm9207c_firmware
-
qualcommmdm9607_firmware
-
qualcommmdm9615_firmware
-
qualcommmdm9640_firmware
-
qualcommmdm9650_firmware
-
qualcommmsm8909w_firmware
-
qualcommmsm8996_firmware
-
qualcommmsm8996au_firmware
-
qualcommqca6174a_firmware
-
qualcommqca9377_firmware
-
qualcommqca9379_firmware
-
qualcommsdm439_firmware
-
qualcommsdm636_firmware
-
qualcommsdm660_firmware
-
qualcommsdx20_firmware
-
qualcommsdx24_firmware
-
qualcommsm8150_firmware
-
𝑥
= Vulnerable software versions