CVE-2020-3645 PUBLISHED CVSS 7.5 HIGH

Firmware will hit assert in WLAN firmware If encrypted data length in FILS IE of reassoc response is more than 528 bytes in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ6018, IPQ8074, Kamorta, Nicobar, QCA6390, QCA8081, QCN7605, QCS404, QCS405, QCS605, Rennell, SC7180, SC8180X, SDA845, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130

EPSS 0.37% · 58.6th percentile

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.37%
58.6th percentile

Affected Products

VendorProductVersions
qualcommipq8074_firmware
qualcommipq6018_firmware
Qualcomm, Inc.Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingIPQ6018, IPQ8074, Kamorta, Nicobar, QCA6390, QCA8081, QCN7605, QCS404, QCS405, QCS605, Rennell, SC7180, SC8180X, SDA845, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130
qualcommrennell_firmware
qualcommsdm845_firmware
qualcommsxr2130_firmware
qualcommnicobar_firmware
qualcommqca6390_firmware
qualcommsdm670_firmware
qualcommsm6150_firmware
qualcommqcn7605_firmware
qualcommsc8180x_firmware
qualcommsc7180_firmware
qualcommqca8081_firmware
qualcommqcs405_firmware
qualcommsm8150_firmware
qualcommsda845_firmware
qualcommqcs404_firmware
qualcommsdm850_firmware
qualcommsm7150_firmware

…and 4 more

Timeline

References

Open in Interactive Console →