Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2020-11210


Possible memory corruption in RPM region due to improper XPU configuration in Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking


Security Impact Summary

This vulnerability carries a CRITICAL severity rating with a CVSS v3.1 score of 9.3, requiring local system access to exploit with relatively low complexity without requiring user interaction and does not require pre-existing privileges . The vulnerability impacts confidentiality (data exposure), integrity (unauthorized modifications), and availability (service disruption) for affected systems. Impacting 134 products from qualcomm, from qualcomm, from qualcomm and 131 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

Reported in 2021, this vulnerability emerged during an era marked by increased sophistication in supply chain attacks, cloud infrastructure vulnerabilities, and software-as-a-service (SaaS) security challenges. Security practices during this period emphasized zero-trust architectures, container security, and API protection.


Published

2021-04-07T08:15:13.657

Last Modified

2024-11-21T04:57:16.133

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.3 (CRITICAL)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

3.9

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System qualcomm ar8035_firmware - Yes
Hardware qualcomm ar8035 - No
Operating System qualcomm pm4125_firmware - Yes
Hardware qualcomm pm4125 - No
Operating System qualcomm pm4250_firmware - Yes
Hardware qualcomm pm4250 - No
Operating System qualcomm pm6125_firmware - Yes
Hardware qualcomm pm6125 - No
Operating System qualcomm pm6150a_firmware - Yes
Hardware qualcomm pm6150a - No
Operating System qualcomm pm6150l_firmware - Yes
Hardware qualcomm pm6150l - No
Operating System qualcomm pm6350_firmware - Yes
Hardware qualcomm pm6350 - No
Operating System qualcomm pm7250b_firmware - Yes
Hardware qualcomm pm7250b - No
Operating System qualcomm pm8008_firmware - Yes
Hardware qualcomm pm8008 - No
Operating System qualcomm pmd9655_firmware - Yes
Hardware qualcomm pmd9655 - No
Operating System qualcomm pmi632_firmware - Yes
Hardware qualcomm pmi632 - No
Operating System qualcomm pmk8003_firmware - Yes
Hardware qualcomm pmk8003 - No
Operating System qualcomm qat3519_firmware - Yes
Hardware qualcomm qat3519 - No
Operating System qualcomm qat3522_firmware - Yes
Hardware qualcomm qat3522 - No
Operating System qualcomm qat3555_firmware - Yes
Hardware qualcomm qat3555 - No
Operating System qualcomm qat5515_firmware - Yes
Hardware qualcomm qat5515 - No
Operating System qualcomm qat5516_firmware - Yes
Hardware qualcomm qat5516 - No
Operating System qualcomm qca6390_firmware - Yes
Hardware qualcomm qca6390 - No
Operating System qualcomm qca9984_firmware - Yes
Hardware qualcomm qca9984 - No
Operating System qualcomm qcm2290_firmware - Yes
Hardware qualcomm qcm2290 - No
Operating System qualcomm qcm4290_firmware - Yes
Hardware qualcomm qcm4290 - No
Operating System qualcomm qcs2290_firmware - Yes
Hardware qualcomm qcs2290 - No
Operating System qualcomm qcs405_firmware - Yes
Hardware qualcomm qcs405 - No
Operating System qualcomm qcs4290_firmware - Yes
Hardware qualcomm qcs4290 - No
Operating System qualcomm qdm2301_firmware - Yes
Hardware qualcomm qdm2301 - No
Operating System qualcomm qdm2302_firmware - Yes
Hardware qualcomm qdm2302 - No
Operating System qualcomm qet4101_firmware - Yes
Hardware qualcomm qet4101 - No
Operating System qualcomm qet6105_firmware - Yes
Hardware qualcomm qet6105 - No
Operating System qualcomm qpa4360_firmware - Yes
Hardware qualcomm qpa4360 - No
Operating System qualcomm qpa4361_firmware - Yes
Hardware qualcomm qpa4361 - No
Operating System qualcomm qpa6560_firmware - Yes
Hardware qualcomm qpa6560 - No
Operating System qualcomm qpa8673_firmware - Yes
Hardware qualcomm qpa8673 - No
Operating System qualcomm qsw6310_firmware - Yes
Hardware qualcomm qsw6310 - No
Operating System qualcomm qsw8573_firmware - Yes
Hardware qualcomm qsw8573 - No
Operating System qualcomm qsw8574_firmware - Yes
Hardware qualcomm qsw8574 - No
Operating System qualcomm qtc410s_firmware - Yes
Hardware qualcomm qtc410s - No
Operating System qualcomm qtm525_firmware - Yes
Hardware qualcomm qtm525 - No
Operating System qualcomm sd460_firmware - Yes
Hardware qualcomm sd460 - No
Operating System qualcomm sd480_firmware - Yes
Hardware qualcomm sd480 - No
Operating System qualcomm sd662_firmware - Yes
Hardware qualcomm sd662 - No
Operating System qualcomm sd665_firmware - Yes
Hardware qualcomm sd665 - No
Operating System qualcomm sdr425_firmware - Yes
Hardware qualcomm sdr425 - No
Operating System qualcomm sdr660_firmware - Yes
Hardware qualcomm sdr660 - No
Operating System qualcomm sdr735_firmware - Yes
Hardware qualcomm sdr735 - No
Operating System qualcomm sdr735g_firmware - Yes
Hardware qualcomm sdr735g - No
Operating System qualcomm sm4125_firmware - Yes
Hardware qualcomm sm4125 - No
Operating System qualcomm smb1351_firmware - Yes
Hardware qualcomm smb1351 - No
Operating System qualcomm smb1354_firmware - Yes
Hardware qualcomm smb1354 - No
Operating System qualcomm smb1355_firmware - Yes
Hardware qualcomm smb1355 - No
Operating System qualcomm smb1396_firmware - Yes
Hardware qualcomm smb1396 - No
Operating System qualcomm smr526_firmware - Yes
Hardware qualcomm smr526 - No
Operating System qualcomm wcd9370_firmware - Yes
Hardware qualcomm wcd9370 - No
Operating System qualcomm wcd9375_firmware - Yes
Hardware qualcomm wcd9375 - No
Operating System qualcomm wcd9385_firmware - Yes
Hardware qualcomm wcd9385 - No
Operating System qualcomm wcn3910_firmware - Yes
Hardware qualcomm wcn3910 - No
Operating System qualcomm wcn3950_firmware - Yes
Hardware qualcomm wcn3950 - No
Operating System qualcomm wcn3980_firmware - Yes
Hardware qualcomm wcn3980 - No
Operating System qualcomm wcn3988_firmware - Yes
Hardware qualcomm wcn3988 - No
Operating System qualcomm wcn3991_firmware - Yes
Hardware qualcomm wcn3991 - No
Operating System qualcomm wcn3998_firmware - Yes
Hardware qualcomm wcn3998 - No
Operating System qualcomm wcn3999_firmware - Yes
Hardware qualcomm wcn3999 - No
Operating System qualcomm wcn6850_firmware - Yes
Hardware qualcomm wcn6850 - No
Operating System qualcomm wgr7640_firmware - Yes
Hardware qualcomm wgr7640 - No
Operating System qualcomm wsa8810_firmware - Yes
Hardware qualcomm wsa8810 - No
Operating System qualcomm wsa8815_firmware - Yes
Hardware qualcomm wsa8815 - No
Operating System qualcomm wtr2965_firmware - Yes
Hardware qualcomm wtr2965 - No
Operating System qualcomm wtr3925_firmware - Yes
Hardware qualcomm wtr3925 - No

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For qualcomm's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.