VDB

CVE-2020-3645

CVE-2020-3645 PUBLISHED CVSS 7.5 HIGH

Firmware will hit assert in WLAN firmware If encrypted data length in FILS IE of reassoc response is more than 528 bytes in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ6018, IPQ8074, Kamorta, Nicobar, QCA6390, QCA8081, QCN7605, QCS404, QCS405, QCS605, Rennell, SC7180, SC8180X, SDA845, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130

EPSS 0.37% · 59.2th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.37%
59.2th percentile

Affected Products

VendorProductVersions
qualcommipq8074_firmware
qualcommipq6018_firmware
Qualcomm, Inc.Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking*
qualcommrennell_firmware
qualcommsdm845_firmware
qualcommsxr2130_firmware
qualcommnicobar_firmware
qualcommqca6390_firmware
qualcommsdm670_firmware
qualcommsm6150_firmware
qualcommqcn7605_firmware
qualcommsc8180x_firmware
qualcommsc7180_firmware
qualcommqca8081_firmware
qualcommqcs405_firmware
qualcommsm8150_firmware
qualcommsda845_firmware
qualcommqcs404_firmware
qualcommsdm850_firmware
qualcommsm7150_firmware

…and 4 more

Timeline

  • May 5, 2020 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 28, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 1, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›