CVE-2020-11168 PUBLISHED CVSS 9.800000190734863 CRITICAL

u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8009W, APQ8017, APQ8053, APQ8064AU, APQ8096AU, APQ8098, MDM9206, MDM9650, MSM8909W, MSM8953, MSM8996AU, QCM4290, QCS405, QCS4290, QCS603, QCS605, QM215, QSM8350, SA6155, SA6155P, SA8155, SA8155P, SDA429W, SDA640, SDA660, SDA845, SDA855, SDM1000, SDM429, SDM429W, SDM450, SDM632, SDM640, SDM830, SDM845, SDW2500, SDX20, SDX20M, SDX50M, SDX55, SDX55M, SM4250, SM4250P, SM6115, SM6115P, SM6125, SM6250, SM6350, SM7125, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SM8350, SM8350P, SXR2130, SXR2130P, WCD9330

EPSS 0.28% · 51.5th percentile

Risk Scores

CVSS v3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.28%
51.5th percentile

Affected Products

VendorProductVersions
qualcommmsm8996au_firmware
qualcommapq8009_firmware
qualcommsm4250_firmware
qualcommsdx50m_firmware
qualcommqcs605_firmware
qualcommsdm429w_firmware
qualcommsxr2130p_firmware
qualcommsda855_firmware
qualcommmsm8909w_firmware
qualcommsm7225_firmware
qualcommqcs405_firmware
qualcommsdx20_firmware
qualcommapq8009w_firmware
qualcommsa8155p_firmware
qualcommsa6155_firmware
qualcommapq8064au_firmware
qualcommqcs603_firmware
qualcommsdm640_firmware
qualcommsm6115p_firmware
qualcommsm8350_firmware

…and 42 more

Timeline

References

Open in Interactive Console →