Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2020-11120


u'Calling thread may free the data buffer pointer that was passed to the callback and later when event loop executes the callback, data buffer may not be valid and will lead to use after free scenario' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8096AU, APQ8098, Bitra, Kamorta, MSM8917, MSM8953, MSM8998, QCM2150, QCS405, QCS605, QM215, Rennell, Saipan, SDM429, SDM439, SDM450, SDM632, SM6150, SM7150, SM8150, SM8250, SXR2130


Published

2020-09-08T10:15:14.373

Last Modified

2024-11-21T04:56:51.360

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:P/I:P/A:P

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

3.9

Impact Score

6.4

Weaknesses
  • Type: Primary
    CWE-416

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System qualcomm apq8096au_firmware - Yes
Hardware qualcomm apq8096au - No
Operating System qualcomm apq8098_firmware - Yes
Hardware qualcomm apq8098 - No
Operating System qualcomm bitra_firmware - Yes
Hardware qualcomm bitra - No
Operating System qualcomm kamorta_firmware - Yes
Hardware qualcomm kamorta - No
Operating System qualcomm msm8917_firmware - Yes
Hardware qualcomm msm8917 - No
Operating System qualcomm msm8953_firmware - Yes
Hardware qualcomm msm8953 - No
Operating System qualcomm msm8998_firmware - Yes
Hardware qualcomm msm8998 - No
Operating System qualcomm qcm2150_firmware - Yes
Hardware qualcomm qcm2150 - No
Operating System qualcomm qcs405_firmware - Yes
Hardware qualcomm qcs405 - No
Operating System qualcomm qcs605_firmware - Yes
Hardware qualcomm qcs605 - No
Operating System qualcomm qm215_firmware - Yes
Hardware qualcomm qm215 - No
Operating System qualcomm rennell_firmware - Yes
Hardware qualcomm rennell - No
Operating System qualcomm saipan_firmware - Yes
Hardware qualcomm saipan - No
Operating System qualcomm sdm429_firmware - Yes
Hardware qualcomm sdm429 - No
Operating System qualcomm sdm439_firmware - Yes
Hardware qualcomm sdm439 - No
Operating System qualcomm sdm450_firmware - Yes
Hardware qualcomm sdm450 - No
Operating System qualcomm sdm632_firmware - Yes
Hardware qualcomm sdm632 - No
Operating System qualcomm sm6150_firmware - Yes
Hardware qualcomm sm6150 - No
Operating System qualcomm sm7150_firmware - Yes
Hardware qualcomm sm7150 - No
Operating System qualcomm sm8150_firmware - Yes
Hardware qualcomm sm8150 - No
Operating System qualcomm sm8250_firmware - Yes
Hardware qualcomm sm8250 - No
Operating System qualcomm sxr2130_firmware - Yes
Hardware qualcomm sxr2130 - No

References