CVE-2020-11164 PUBLISHED CVSS 7.800000190734863 HIGH

u'Third-party app may also call the broadcasts in Perfdump and cause privilege escalation issue due to improper access control' in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in Agatti, APQ8096AU, APQ8098, Bitra, Kamorta, MSM8909W, MSM8917, MSM8940, Nicobar, QCA6390, QCM2150, QCS605, Rennell, SA6155P, SA8155P, Saipan, SDA660, SDM429W, SDM450, SDM630, SDM636, SDM660, SDM670, SDM710, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130

EPSS 0.04% · 13.0th percentile

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.04%
13.0th percentile

Affected Products

VendorProductVersions
qualcommsa8155p_firmware
qualcommqcs605_firmware
qualcommsdm660_firmware
qualcommsdm630_firmware
qualcommqcm2150_firmware
qualcommsaipan_firmware
qualcommsm8150_firmware
qualcommagatti_firmware
qualcommmsm8940_firmware
qualcommmsm8909w_firmware
qualcommsxr2130_firmware
qualcommsa6155p_firmware
qualcommqca6390_firmware
qualcommapq8098_firmware
qualcommmsm8917_firmware
qualcommsdm429w_firmware
qualcommsm6150_firmware
qualcommapq8096au_firmware
qualcommsdm710_firmware
qualcommsm8250_firmware

…and 11 more

Timeline

References

Open in Interactive Console →