V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2020-11168
CVE
Critical

u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapd…

CVSS
9.8
Critical
EPSS
0.01
p54
Published
2020-01-01
Updated
2020-01-01
Description

u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8009W, APQ8017, APQ8053, APQ8064AU, APQ8096AU, APQ8098, MDM9206, MDM9650, MSM8909W, MSM8953, MSM8996AU, QCM4290, QCS405, QCS4290, QCS603, QCS605, QM215, QSM8350, SA6155, SA6155P, SA8155, SA8155P, SDA429W, SDA640, SDA660, SDA845, SDA855, SDM1000, SDM429, SDM429W, SDM450, SDM632, SDM640, SDM830, SDM845, SDW2500, SDX20, SDX20M, SDX50M, SDX55, SDX55M, SM4250, SM4250P, SM6115, SM6115P, SM6125, SM6250, SM6350, SM7125, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SM8350, SM8350P, SXR2130, SXR2130P, WCD9330

Tags · CWE
Pre-auth
CWE-476
Affected products
Apq8009_firmwareApq8009w_firmwareApq8017_firmwareApq8053_firmwareApq8064au_firmwareApq8096au_firmwareApq8098_firmwareMdm9206_firmwareMdm9650_firmwareMsm8909w_firmwareMsm8953_firmwareMsm8996au_firmwareQcm4290_firmwareQcs405_firmwareQcs4290_firmwareQcs603_firmwareQcs605_firmwareQm215_firmwareQsm8350_firmwareSa6155_firmware
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Timeline
2020-01-01
Published
2020-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.009 · p54
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
apq8009_firmware*Tracked
apq8009w_firmware*Tracked
apq8017_firmware*Tracked
apq8053_firmware*Tracked
apq8064au_firmware*Tracked
apq8096au_firmware*Tracked
apq8098_firmware*Tracked
mdm9206_firmware*Tracked
mdm9650_firmware*Tracked
msm8909w_firmware*Tracked
msm8953_firmware*Tracked
msm8996au_firmware*Tracked
qcm4290_firmware*Tracked
qcs405_firmware*Tracked
qcs4290_firmware*Tracked
qcs603_firmware*Tracked
qcs605_firmware*Tracked
qm215_firmware*Tracked
qsm8350_firmware*Tracked
sa6155_firmware*Tracked
Showing first 20 of 61
Source databases
CVE