CVE-2020-11157 PUBLISHED CVSS 7.5 HIGH

u'Lack of handling unexpected control messages while encryption was in progress can terminate the connection and thus leading to a DoS' in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8053, APQ8076, MDM9640, MDM9650, MSM8905, MSM8917, MSM8937, MSM8940, MSM8953, QCA6174A, QCA9886, QCM2150, QM215, SDM429, SDM439, SDM450, SDM632

EPSS 0.16% · 36.4th percentile

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.16%
36.4th percentile

Affected Products

VendorProductVersions
qualcommmdm9650_firmware
qualcommsdm439_firmware
qualcommmsm8953_firmware
qualcommsdm450_firmware
qualcommqcm2150_firmware
qualcommmdm9640_firmware
qualcommmsm8940_firmware
qualcommmsm8917_firmware
qualcommsdm632_firmware
Qualcomm, Inc.Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon WearablesAPQ8053, APQ8076, MDM9640, MDM9650, MSM8905, MSM8917, MSM8937, MSM8940, MSM8953, QCA6174A, QCA9886, QCM2150, QM215, SDM429, SDM439, SDM450, SDM632
qualcommmsm8905_firmware
qualcommapq8076_firmware
qualcommmsm8937_firmware
qualcommqca9886_firmware
qualcommsdm429_firmware
qualcommqca6174a_firmware
qualcommapq8053_firmware
qualcommqm215_firmware

Timeline

References

Open in Interactive Console →