CVE-2020-3625 PUBLISHED CVSS 7.800000190734863 HIGH

When making query to DSP capabilities, Stack out of bounds occurs due to wrong buffer length configured for DSP attributes in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile in SM8250, SXR2130

EPSS 0.03% · 9.5th percentile

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.03%
9.5th percentile

Affected Products

VendorProductVersions
qualcommsm8250_firmware
qualcommsxr2130_firmware
Qualcomm, Inc.Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon MobileSM8250, SXR2130

Timeline

References

Open in Interactive Console →