Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2020-11155


u'Buffer overflow while processing PDU packet in bluetooth due to lack of check of buffer length before copying into it.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8053, QCA6390, QCN7605, QCN7606, SA415M, SA515M, SA6155P, SA8155P, SC8180X, SDX55


Published

2020-11-02T07:15:13.670

Last Modified

2024-11-21T04:56:57.220

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

CVSSv2 Vector

AV:A/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: ADJACENT_NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

6.5

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System qualcomm apq8009_firmware - Yes
Hardware qualcomm apq8009 - No
Operating System qualcomm apq8053_firmware - Yes
Hardware qualcomm apq8053 - No
Operating System qualcomm qca6390_firmware - Yes
Hardware qualcomm qca6390 - No
Operating System qualcomm qcn7605_firmware - Yes
Hardware qualcomm qcn7605 - No
Operating System qualcomm qcn7606_firmware - Yes
Hardware qualcomm qcn7606 - No
Operating System qualcomm sa415m_firmware - Yes
Hardware qualcomm sa415m - No
Operating System qualcomm sa515m_firmware - Yes
Hardware qualcomm sa515m - No
Operating System qualcomm sa6155p_firmware - Yes
Hardware qualcomm sa6155p - No
Operating System qualcomm sa8155p_firmware - Yes
Hardware qualcomm sa8155p - No
Operating System qualcomm sc8180x_firmware - Yes
Hardware qualcomm sc8180x - No
Operating System qualcomm sdx55_firmware - Yes
Hardware qualcomm sdx55 - No

References