CVE-2020-3692 PUBLISHED CVSS 9.800000190734863 CRITICAL

u'Possible buffer overflow while updating output buffer for IMEI and Gateway Address due to lack of check of input validation for parameters received from server' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in Agatti, Kamorta, Nicobar, QCM6125, QCS610, Rennell, SA415M, Saipan, SC7180, SC8180X, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130

EPSS 0.36% · 57.7th percentile

Risk Scores

CVSS v3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.36%
57.7th percentile

Affected Products

VendorProductVersions
qualcommsa415m_firmware
qualcommsm8150_firmware
qualcommsdx24_firmware
qualcommsxr2130_firmware
qualcommsm6150_firmware
qualcommqcm6125_firmware
qualcommqcs610_firmware
Qualcomm, Inc.Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon MobileAgatti, Kamorta, Nicobar, QCM6125, QCS610, Rennell, SA415M, Saipan, SC7180, SC8180X, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130
qualcommagatti_firmware
qualcommsaipan_firmware
qualcommnicobar_firmware
qualcommsc8180x_firmware
qualcommsc7180_firmware
qualcommsdx55_firmware
qualcommkamorta_firmware
qualcommrennell_firmware
qualcommsm7150_firmware
qualcommsm8250_firmware

Timeline

References

Open in Interactive Console →