Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2020-11187


Possible memory corruption in BSI module due to improper validation of parameter count in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Mobile


Security Impact Summary

This vulnerability carries a HIGH severity rating with a CVSS v3.1 score of 7.8, requiring local system access to exploit with relatively low complexity without requiring user interaction requiring only low-level privileges . The vulnerability impacts confidentiality (data exposure), integrity (unauthorized modifications), and availability (service disruption) for affected systems. Impacting 196 products from qualcomm, from qualcomm, from qualcomm and 193 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

Reported in 2021, this vulnerability emerged during an era marked by increased sophistication in supply chain attacks, cloud infrastructure vulnerabilities, and software-as-a-service (SaaS) security challenges. Security practices during this period emphasized zero-trust architectures, container security, and API protection.


Published

2021-02-22T07:15:13.720

Last Modified

2024-11-21T04:57:08.450

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

3.9

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-129

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System qualcomm aqt1000_firmware - Yes
Hardware qualcomm aqt1000 - No
Operating System qualcomm csrb31024_firmware - Yes
Hardware qualcomm csrb31024 - No
Operating System qualcomm pm7150a_firmware - Yes
Hardware qualcomm pm7150a - No
Operating System qualcomm pm7150l_firmware - Yes
Hardware qualcomm pm7150l - No
Operating System qualcomm pm7250_firmware - Yes
Hardware qualcomm pm7250 - No
Operating System qualcomm pm7250b_firmware - Yes
Hardware qualcomm pm7250b - No
Operating System qualcomm pm8004_firmware - Yes
Hardware qualcomm pm8004 - No
Operating System qualcomm pm8008_firmware - Yes
Hardware qualcomm pm8008 - No
Operating System qualcomm pm855_firmware - Yes
Hardware qualcomm pm855 - No
Operating System qualcomm pm855b_firmware - Yes
Hardware qualcomm pm855b - No
Operating System qualcomm pm855l_firmware - Yes
Hardware qualcomm pm855l - No
Operating System qualcomm pm855p_firmware - Yes
Hardware qualcomm pm855p - No
Operating System qualcomm pmk8002_firmware - Yes
Hardware qualcomm pmk8002 - No
Operating System qualcomm pmx24_firmware - Yes
Hardware qualcomm pmx24 - No
Operating System qualcomm pmx50_firmware - Yes
Hardware qualcomm pmx50 - No
Operating System qualcomm pmx55_firmware - Yes
Hardware qualcomm pmx55 - No
Operating System qualcomm qat3516_firmware - Yes
Hardware qualcomm qat3516 - No
Operating System qualcomm qat3518_firmware - Yes
Hardware qualcomm qat3518 - No
Operating System qualcomm qat3519_firmware - Yes
Hardware qualcomm qat3519 - No
Operating System qualcomm qat3555_firmware - Yes
Hardware qualcomm qat3555 - No
Operating System qualcomm qat5515_firmware - Yes
Hardware qualcomm qat5515 - No
Operating System qualcomm qat5522_firmware - Yes
Hardware qualcomm qat5522 - No
Operating System qualcomm qat5533_firmware - Yes
Hardware qualcomm qat5533 - No
Operating System qualcomm qbt2000_firmware - Yes
Hardware qualcomm qbt2000 - No
Operating System qualcomm qca6391_firmware - Yes
Hardware qualcomm qca6391 - No
Operating System qualcomm qca6564au_firmware - Yes
Hardware qualcomm qca6564au - No
Operating System qualcomm qca6574a_firmware - Yes
Hardware qualcomm qca6574a - No
Operating System qualcomm qca6574au_firmware - Yes
Hardware qualcomm qca6574au - No
Operating System qualcomm qca6584au_firmware - Yes
Hardware qualcomm qca6584au - No
Operating System qualcomm qca6595au_firmware - Yes
Hardware qualcomm qca6595au - No
Operating System qualcomm qca6696_firmware - Yes
Hardware qualcomm qca6696 - No
Operating System qualcomm qca8337_firmware - Yes
Hardware qualcomm qca8337 - No
Operating System qualcomm qdm2301_firmware - Yes
Hardware qualcomm qdm2301 - No
Operating System qualcomm qdm2305_firmware - Yes
Hardware qualcomm qdm2305 - No
Operating System qualcomm qdm3301_firmware - Yes
Hardware qualcomm qdm3301 - No
Operating System qualcomm qdm5620_firmware - Yes
Hardware qualcomm qdm5620 - No
Operating System qualcomm qdm5621_firmware - Yes
Hardware qualcomm qdm5621 - No
Operating System qualcomm qdm5650_firmware - Yes
Hardware qualcomm qdm5650 - No
Operating System qualcomm qdm5652_firmware - Yes
Hardware qualcomm qdm5652 - No
Operating System qualcomm qdm5670_firmware - Yes
Hardware qualcomm qdm5670 - No
Operating System qualcomm qdm5671_firmware - Yes
Hardware qualcomm qdm5671 - No
Operating System qualcomm qdm5677_firmware - Yes
Hardware qualcomm qdm5677 - No
Operating System qualcomm qdm5679_firmware - Yes
Hardware qualcomm qdm5679 - No
Operating System qualcomm qet4101_firmware - Yes
Hardware qualcomm qet4101 - No
Operating System qualcomm qet5100_firmware - Yes
Hardware qualcomm qet5100 - No
Operating System qualcomm qet6110_firmware - Yes
Hardware qualcomm qet6110 - No
Operating System qualcomm qln1021aq_firmware - Yes
Hardware qualcomm qln1021aq - No
Operating System qualcomm qln1031_firmware - Yes
Hardware qualcomm qln1031 - No
Operating System qualcomm qln1036aq_firmware - Yes
Hardware qualcomm qln1036aq - No
Operating System qualcomm qln4642_firmware - Yes
Hardware qualcomm qln4642 - No
Operating System qualcomm qln4650_firmware - Yes
Hardware qualcomm qln4650 - No
Operating System qualcomm qln5020_firmware - Yes
Hardware qualcomm qln5020 - No
Operating System qualcomm qln5030_firmware - Yes
Hardware qualcomm qln5030 - No
Operating System qualcomm qln5040_firmware - Yes
Hardware qualcomm qln5040 - No
Operating System qualcomm qpa2625_firmware - Yes
Hardware qualcomm qpa2625 - No
Operating System qualcomm qpa5580_firmware - Yes
Hardware qualcomm qpa5580 - No
Operating System qualcomm qpa6560_firmware - Yes
Hardware qualcomm qpa6560 - No
Operating System qualcomm qpa8673_firmware - Yes
Hardware qualcomm qpa8673 - No
Operating System qualcomm qpa8686_firmware - Yes
Hardware qualcomm qpa8686 - No
Operating System qualcomm qpa8801_firmware - Yes
Hardware qualcomm qpa8801 - No
Operating System qualcomm qpa8802_firmware - Yes
Hardware qualcomm qpa8802 - No
Operating System qualcomm qpa8803_firmware - Yes
Hardware qualcomm qpa8803 - No
Operating System qualcomm qpa8821_firmware - Yes
Hardware qualcomm qpa8821 - No
Operating System qualcomm qpa8842_firmware - Yes
Hardware qualcomm qpa8842 - No
Operating System qualcomm qpm5621_firmware - Yes
Hardware qualcomm qpm5621 - No
Operating System qualcomm qpm5658_firmware - Yes
Hardware qualcomm qpm5658 - No
Operating System qualcomm qpm5670_firmware - Yes
Hardware qualcomm qpm5670 - No
Operating System qualcomm qpm5677_firmware - Yes
Hardware qualcomm qpm5677 - No
Operating System qualcomm qpm5679_firmware - Yes
Hardware qualcomm qpm5679 - No
Operating System qualcomm qpm6582_firmware - Yes
Hardware qualcomm qpm6582 - No
Operating System qualcomm qpm6585_firmware - Yes
Hardware qualcomm qpm6585 - No
Operating System qualcomm qpm8830_firmware - Yes
Hardware qualcomm qpm8830 - No
Operating System qualcomm qpm8895_firmware - Yes
Hardware qualcomm qpm8895 - No
Operating System qualcomm qtc801s_firmware - Yes
Hardware qualcomm qtc801s - No
Operating System qualcomm qtm525_firmware - Yes
Hardware qualcomm qtm525 - No
Operating System qualcomm qtm527_firmware - Yes
Hardware qualcomm qtm527 - No
Operating System qualcomm sa415m_firmware - Yes
Hardware qualcomm sa415m - No
Operating System qualcomm sd765_firmware - Yes
Hardware qualcomm sd765 - No
Operating System qualcomm sd765g_firmware - Yes
Hardware qualcomm sd765g - No
Operating System qualcomm sd768g_firmware - Yes
Hardware qualcomm sd768g - No
Operating System qualcomm sdr051_firmware - Yes
Hardware qualcomm sdr051 - No
Operating System qualcomm sdr052_firmware - Yes
Hardware qualcomm sdr052 - No
Operating System qualcomm sdr8150_firmware - Yes
Hardware qualcomm sdr8150 - No
Operating System qualcomm sdr865_firmware - Yes
Hardware qualcomm sdr865 - No
Operating System qualcomm sdx50m_firmware - Yes
Hardware qualcomm sdx50m - No
Operating System qualcomm sdx55_firmware - Yes
Hardware qualcomm sdx55 - No
Operating System qualcomm sm7250p_firmware - Yes
Hardware qualcomm sm7250p - No
Operating System qualcomm smb1355_firmware - Yes
Hardware qualcomm smb1355 - No
Operating System qualcomm smb1390_firmware - Yes
Hardware qualcomm smb1390 - No
Operating System qualcomm smr525_firmware - Yes
Hardware qualcomm smr525 - No
Operating System qualcomm smr526_firmware - Yes
Hardware qualcomm smr526 - No
Operating System qualcomm wcd9341_firmware - Yes
Hardware qualcomm wcd9341 - No
Operating System qualcomm wcd9380_firmware - Yes
Hardware qualcomm wcd9380 - No
Operating System qualcomm wcd9385_firmware - Yes
Hardware qualcomm wcd9385 - No
Operating System qualcomm wcn3991_firmware - Yes
Hardware qualcomm wcn3991 - No
Operating System qualcomm wcn3998_firmware - Yes
Hardware qualcomm wcn3998 - No
Operating System qualcomm wsa8810_firmware - Yes
Hardware qualcomm wsa8810 - No
Operating System qualcomm wsa8815_firmware - Yes
Hardware qualcomm wsa8815 - No

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For qualcomm's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.