CVE-2020-11181
Last modified
CVE-2020-11181 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. Out of bound access issue while handling cvp process control command due to improper validation of buffer pointer received from HLOS in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile. EPSS estimates a 0.21% chance of exploitation in the next 30 days.
Description
Out of bound access issue while handling cvp process control command due to improper validation of buffer pointer received from HLOS in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Pm3003a Firmware | All versions |
| Qualcomm | Pm8009 Firmware | All versions |
| Qualcomm | Pm8150a Firmware | All versions |
| Qualcomm | Pm8150b Firmware | All versions |
| Qualcomm | Pm8150c Firmware | All versions |
| Qualcomm | Pm8150l Firmware | All versions |
| Qualcomm | Pm8250 Firmware | All versions |
| Qualcomm | Pmk8002 Firmware | All versions |
| Qualcomm | Pmr525 Firmware | All versions |
| Qualcomm | Pmx55 Firmware | All versions |
| Qualcomm | Qbt2000 Firmware | All versions |
| Qualcomm | Qca6390 Firmware | All versions |
| Qualcomm | Qca6391 Firmware | All versions |
| Qualcomm | Qca6421 Firmware | All versions |
| Qualcomm | Qca6426 Firmware | All versions |
| Qualcomm | Qca6431 Firmware | All versions |
| Qualcomm | Qca6436 Firmware | All versions |
| Qualcomm | Qfs2530 Firmware | All versions |
| Qualcomm | Qfs2580 Firmware | All versions |
| Qualcomm | Qsm8250 Firmware | All versions |
| Qualcomm | Qtc800h Firmware | All versions |
| Qualcomm | Qtc801s Firmware | All versions |
| Qualcomm | Sd865 5g Firmware | All versions |
| Qualcomm | Sdr8250 Firmware | All versions |
| Qualcomm | Sdr865 Firmware | All versions |
| Qualcomm | Sdx55 Firmware | All versions |
| Qualcomm | Sdx55m Firmware | All versions |
| Qualcomm | Sdxr2 5g Firmware | All versions |
| Qualcomm | Smb1355 Firmware | All versions |
| Qualcomm | Smb1390 Firmware | All versions |
| Qualcomm | Smr525 Firmware | All versions |
| Qualcomm | Smr526 Firmware | All versions |
| Qualcomm | Wcd9380 Firmware | All versions |
| Qualcomm | Wcd9385 Firmware | All versions |
| Qualcomm | Wcn6750 Firmware | All versions |
| Qualcomm | Wcn6850 Firmware | All versions |
| Qualcomm | Wcn6851 Firmware | All versions |
| Qualcomm | Wsa8810 Firmware | All versions |
| Qualcomm | Wsa8815 Firmware | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-11181?
How severe is CVE-2020-11181?
How do I fix CVE-2020-11181?
Are you affected by CVE-2020-11181?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
