Lucene search

K
cvelistQualcommCVELIST:CVE-2020-3703
HistoryNov 02, 2020 - 6:21 a.m.

CVE-2020-3703

2020-11-0206:21:32
qualcomm
www.cve.org
11
buffer over-read
bluetooth peripheral firmware
link layer length overfow
silent length overflow
snapdragon auto
snapdragon compute
snapdragon connectivity
snapdragon consumer electronics connectivity
snapdragon consumer iot
snapdragon industrial iot
snapdragon iot
snapdragon mobile
snapdragon voice & music
apq8053
apq8076
ar9344
bitra
kamorta
mdm9206
mdm9207c
mdm9607
msm8905
msm8917
msm8937
msm8940
msm8953
nicobar
qca6174a
qca9377
qcm2150
qcm6125
qcs404
qcs405
qcs605
qcs610
qm215
rennell
sc8180x
sdm429
sdm439
sdm450
sdm630
sdm632
sdm636
sdm660
sdm670
sdm710
sdm845
sdx20
sdx24
sm6150
sm7150
sm8150
sxr1130

AI Score

7.1

Confidence

High

EPSS

0.002

Percentile

59.0%

u’Buffer over-read issue in Bluetooth peripheral firmware due to lack of check for invalid opcode and length of opcode received from central device(This CVE is equivalent to Link Layer Length Overfow issue (CVE-2019-16336,CVE-2019-17519) and Silent Length Overflow issue(CVE-2019-17518) mentioned in sweyntooth paper)’ in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8053, APQ8076, AR9344, Bitra, Kamorta, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8917, MSM8937, MSM8940, MSM8953, Nicobar, QCA6174A, QCA9377, QCM2150, QCM6125, QCS404, QCS405, QCS605, QCS610, QM215, Rennell, SC8180X, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130

CNA Affected

[
  {
    "product": "Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music",
    "vendor": "Qualcomm, Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "APQ8053, APQ8076, AR9344, Bitra, Kamorta, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8917, MSM8937, MSM8940, MSM8953, Nicobar, QCA6174A, QCA9377, QCM2150, QCM6125, QCS404, QCS405, QCS605, QCS610, QM215, Rennell, SC8180X, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130"
      }
    ]
  }
]

AI Score

7.1

Confidence

High

EPSS

0.002

Percentile

59.0%

Related for CVELIST:CVE-2020-3703