Lucene search

K
nvd[email protected]NVD:CVE-2020-11167
HistoryJan 21, 2021 - 10:15 a.m.

CVE-2020-11167

2021-01-2110:15:14
CWE-190
CWE-787
web.nvd.nist.gov
2
memory corruption
l2cap
packet length
reassembly logic
snapdragon
remote
data
snapdragon auto
snapdragon compute
snapdragon connectivity
snapdragon consumer iot
snapdragon industrial iot
snapdragon mobile
snapdragon voice & music
snapdragon wearables

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

9.7

Confidence

High

EPSS

0.001

Percentile

44.4%

Memory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

Affected configurations

Nvd
Node
qualcommapq8009wMatch-
OR
qualcommapq8017Match-
OR
qualcommapq8037Match-
OR
qualcommapq8053Match-
OR
qualcommapq8064auMatch-
OR
qualcommapq8096auMatch-
OR
qualcommaqt1000Match-
OR
qualcommmsm8909wMatch-
OR
qualcommmsm8917Match-
OR
qualcommmsm8920Match-
OR
qualcommmsm8937Match-
OR
qualcommmsm8940Match-
OR
qualcommmsm8953Match-
OR
qualcommmsm8996auMatch-
OR
qualcommpm215Match-
OR
qualcommpm3003aMatch-
OR
qualcommpm439Match-
OR
qualcommpm6125Match-
OR
qualcommpm6150Match-
OR
qualcommpm6150aMatch-
OR
qualcommpm6150lMatch-
OR
qualcommpm6350Match-
OR
qualcommpm640aMatch-
OR
qualcommpm640lMatch-
OR
qualcommpm640pMatch-
OR
qualcommpm660Match-
OR
qualcommpm660lMatch-
OR
qualcommpm670Match-
OR
qualcommpm670aMatch-
OR
qualcommpm670lMatch-
OR
qualcommpm7150aMatch-
OR
qualcommpm7150lMatch-
OR
qualcommpm7250Match-
OR
qualcommpm7250bMatch-
OR
qualcommpm8004Match-
OR
qualcommpm8005Match-
OR
qualcommpm8008Match-
OR
qualcommpm8009Match-
OR
qualcommpm8150aMatch-
OR
qualcommpm8150bMatch-
OR
qualcommpm8150cMatch-
OR
qualcommpm8150lMatch-
OR
qualcommpm8250Match-
OR
qualcommpm855Match-
OR
qualcommpm855aMatch-
OR
qualcommpm855bMatch-
OR
qualcommpm855lMatch-
OR
qualcommpm855pMatch-
OR
qualcommpm8909Match-
OR
qualcommpm8937Match-
OR
qualcommpm8940Match-
OR
qualcommpm8953Match-
OR
qualcommpm8996Match-
OR
qualcommpm8998Match-
OR
qualcommpmi632Match-
OR
qualcommpmi8937Match-
OR
qualcommpmi8952Match-
OR
qualcommpmi8994Match-
OR
qualcommpmi8996Match-
OR
qualcommpmi8998Match-
OR
qualcommpmk8001Match-
OR
qualcommpmk8002Match-
OR
qualcommpmk8003Match-
OR
qualcommpmm855auMatch-
OR
qualcommpmm8996auMatch-
OR
qualcommpmr525Match-
OR
qualcommpmr735aMatch-
OR
qualcommpmr735bMatch-
OR
qualcommpmw3100Match-
OR
qualcommpmx50Match-
OR
qualcommpmx55Match-
OR
qualcommqat3516Match-
OR
qualcommqat3518Match-
OR
qualcommqat3519Match-
OR
qualcommqat3522Match-
OR
qualcommqat3550Match-
OR
qualcommqat3555Match-
OR
qualcommqat5515Match-
OR
qualcommqat5516Match-
OR
qualcommqat5522Match-
OR
qualcommqat5533Match-
OR
qualcommqbt1000Match-
OR
qualcommqbt1500Match-
OR
qualcommqbt2000Match-
OR
qualcommqca6174aMatch-
OR
qualcommqca6175aMatch-
OR
qualcommqca6310Match-
OR
qualcommqca6320Match-
OR
qualcommqca6335Match-
OR
qualcommqca6390Match-
OR
qualcommqca6391Match-
OR
qualcommqca6420Match-
OR
qualcommqca6421Match-
OR
qualcommqca6426Match-
OR
qualcommqca6430Match-
OR
qualcommqca6431Match-
OR
qualcommqca6436Match-
OR
qualcommqca6564aMatch-
OR
qualcommqca6564auMatch-
OR
qualcommqca6574Match-
OR
qualcommqca6574aMatch-
OR
qualcommqca6574auMatch-
OR
qualcommqca6595Match-
OR
qualcommqca6595auMatch-
OR
qualcommqca6696Match-
OR
qualcommqca9379Match-
OR
qualcommqcs603Match-
OR
qualcommqcs605Match-
OR
qualcommqdm2301Match-
OR
qualcommqdm2302Match-
OR
qualcommqdm2305Match-
OR
qualcommqdm2307Match-
OR
qualcommqdm2308Match-
OR
qualcommqdm2310Match-
OR
qualcommqdm3301Match-
OR
qualcommqdm5620Match-
OR
qualcommqdm5621Match-
OR
qualcommqdm5650Match-
OR
qualcommqdm5652Match-
OR
qualcommqdm5670Match-
OR
qualcommqdm5671Match-
OR
qualcommqdm5677Match-
OR
qualcommqdm5679Match-
OR
qualcommqet4100Match-
OR
qualcommqet4101Match-
OR
qualcommqet4200aqMatch-
OR
qualcommqet5100Match-
OR
qualcommqet6100Match-
OR
qualcommqet6110Match-
OR
qualcommqfe2080fcMatch-
OR
qualcommqfe2081fcMatch-
OR
qualcommqfe2082fcMatch-
OR
qualcommqfe2101Match-
OR
qualcommqfe2550Match-
OR
qualcommqfe3100Match-
OR
qualcommqfe3440fcMatch-
OR
qualcommqfe4301Match-
OR
qualcommqfe4302Match-
OR
qualcommqfe4303Match-
OR
qualcommqfe4305Match-
OR
qualcommqfe4308Match-
OR
qualcommqfe4309Match-
OR
qualcommqfe4320Match-
OR
qualcommqfe4373fcMatch-
OR
qualcommqfe4455fcMatch-
OR
qualcommqfe4465fcMatch-
OR
qualcommqfs2530Match-
OR
qualcommqfs2580Match-
OR
qualcommqln1020Match-
OR
qualcommqln1021aqMatch-
OR
qualcommqln1030Match-
OR
qualcommqln1031Match-
OR
qualcommqln1035bdMatch-
OR
qualcommqln1036aqMatch-
OR
qualcommqln4642Match-
OR
qualcommqln4650Match-
OR
qualcommqln5020Match-
OR
qualcommqln5030Match-
OR
qualcommqln5040Match-
OR
qualcommqpa2625Match-
OR
qualcommqpa4360Match-
OR
qualcommqpa4361Match-
OR
qualcommqpa5460Match-
OR
qualcommqpa5580Match-
OR
qualcommqpa5581Match-
OR
qualcommqpa6560Match-
OR
qualcommqpa8673Match-
OR
qualcommqpa8686Match-
OR
qualcommqpa8801Match-
OR
qualcommqpa8802Match-
OR
qualcommqpa8803Match-
OR
qualcommqpa8821Match-
OR
qualcommqpa8842Match-
OR
qualcommqpm4650Match-
OR
qualcommqpm5621Match-
OR
qualcommqpm5658Match-
OR
qualcommqpm5670Match-
OR
qualcommqpm5677Match-
OR
qualcommqpm5679Match-
OR
qualcommqpm6582Match-
OR
qualcommqpm6585Match-
OR
qualcommqpm8820Match-
OR
qualcommqpm8830Match-
OR
qualcommqpm8870Match-
OR
qualcommqpm8895Match-
OR
qualcommqsm7250Match-
OR
qualcommqsw6310Match-
OR
qualcommqsw8573Match-
OR
qualcommqsw8574Match-
OR
qualcommqtc410sMatch-
OR
qualcommqtc800hMatch-
OR
qualcommqtc800sMatch-
OR
qualcommqtc800tMatch-
OR
qualcommqtc801sMatch-
OR
qualcommqtm525Match-
OR
qualcommqualcomm215Match-
OR
qualcommrgr7640auMatch-
OR
qualcommsa6155Match-
OR
qualcommsa6155pMatch-
OR
qualcommsa8155Match-
OR
qualcommsa8155pMatch-
OR
qualcommsd205Match-
OR
qualcommsd210Match-
OR
qualcommsd429Match-
OR
qualcommsd439Match-
OR
qualcommsd450Match-
OR
qualcommsd632Match-
OR
qualcommsd665Match-
OR
qualcommsd675Match-
OR
qualcommsd6905gMatch-
OR
qualcommsd710Match-
OR
qualcommsd712Match-
OR
qualcommsd750gMatch-
OR
qualcommsd765Match-
OR
qualcommsd765gMatch-
OR
qualcommsd768gMatch-
OR
qualcommsd820Match-
OR
qualcommsd821Match-
OR
qualcommsd835Match-
OR
qualcommsd845Match-
OR
qualcommsd855Match-
OR
qualcommsd8655gMatch-
OR
qualcommsd8cxMatch-
OR
qualcommsdm429wMatch-
OR
qualcommsdm830Match-
OR
qualcommsdr051Match-
OR
qualcommsdr052Match-
OR
qualcommsdr660Match-
OR
qualcommsdr660gMatch-
OR
qualcommsdr735Match-
OR
qualcommsdr8150Match-
OR
qualcommsdr8250Match-
OR
qualcommsdr845Match-
OR
qualcommsdr865Match-
OR
qualcommsdw2500Match-
OR
qualcommsdx50mMatch-
OR
qualcommsdx55Match-
OR
qualcommsdx55mMatch-
OR
qualcommsdxr1Match-
OR
qualcommsdxr25gMatch-
OR
qualcommsm7250pMatch-
OR
qualcommsmb1351Match-
OR
qualcommsmb1355Match-
OR
qualcommsmb1358Match-
OR
qualcommsmb1380Match-
OR
qualcommsmb1381Match-
OR
qualcommsmb1390Match-
OR
qualcommsmb1395Match-
OR
qualcommsmb1396Match-
OR
qualcommsmr525Match-
OR
qualcommsmr526Match-
OR
qualcommwcd9326Match-
OR
qualcommwcd9335Match-
OR
qualcommwcd9340Match-
OR
qualcommwcd9341Match-
OR
qualcommwcd9360Match-
OR
qualcommwcd9370Match-
OR
qualcommwcd9375Match-
OR
qualcommwcd9380Match-
OR
qualcommwcd9385Match-
OR
qualcommwcn3610Match-
OR
qualcommwcn3615Match-
OR
qualcommwcn3620Match-
OR
qualcommwcn3660Match-
OR
qualcommwcn3660bMatch-
OR
qualcommwcn3680Match-
OR
qualcommwcn3680bMatch-
OR
qualcommwcn3950Match-
OR
qualcommwcn3980Match-
OR
qualcommwcn3988Match-
OR
qualcommwcn3990Match-
OR
qualcommwcn3991Match-
OR
qualcommwcn3998Match-
OR
qualcommwgr7640Match-
OR
qualcommwhs9410Match-
OR
qualcommwsa8810Match-
OR
qualcommwsa8815Match-
OR
qualcommwsa8830Match-
OR
qualcommwsa8835Match-
OR
qualcommwtr2955Match-
OR
qualcommwtr2965Match-
OR
qualcommwtr3905Match-
OR
qualcommwtr3925Match-
OR
qualcommwtr3950Match-
OR
qualcommwtr4905Match-
OR
qualcommwtr5975Match-
VendorProductVersionCPE
qualcommapq8009w-cpe:2.3:h:qualcomm:apq8009w:-:*:*:*:*:*:*:*
qualcommapq8017-cpe:2.3:h:qualcomm:apq8017:-:*:*:*:*:*:*:*
qualcommapq8037-cpe:2.3:h:qualcomm:apq8037:-:*:*:*:*:*:*:*
qualcommapq8053-cpe:2.3:h:qualcomm:apq8053:-:*:*:*:*:*:*:*
qualcommapq8064au-cpe:2.3:h:qualcomm:apq8064au:-:*:*:*:*:*:*:*
qualcommapq8096au-cpe:2.3:h:qualcomm:apq8096au:-:*:*:*:*:*:*:*
qualcommaqt1000-cpe:2.3:h:qualcomm:aqt1000:-:*:*:*:*:*:*:*
qualcommmsm8909w-cpe:2.3:h:qualcomm:msm8909w:-:*:*:*:*:*:*:*
qualcommmsm8917-cpe:2.3:h:qualcomm:msm8917:-:*:*:*:*:*:*:*
qualcommmsm8920-cpe:2.3:h:qualcomm:msm8920:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 2861

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

9.7

Confidence

High

EPSS

0.001

Percentile

44.4%

Related for NVD:CVE-2020-11167