CVE-2020-11286
6.8
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 5.9
Source: NVD
Description
An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface & endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Affected (135)
Products: Qualcomm: Apq8009, Apq8009w, Apq8017, Apq8053, Apq8064au, Apq8076, Apq8096au, Ar8151, Csr6030, Mdm9206, Mdm9230, Mdm9250, Mdm9330, Mdm9607, Mdm9626, Mdm9628, Mdm9630, Mdm9640, Mdm9650, Mdm9655, Msm8909w, Msm8937, Msm8996au, Pm660, Pm660a, Pm660l, Pm8004, Pm8005, Pm8909, Pm8916, Pm8937, Pm8952, Pm8953, Pm8956, Pm8996, Pm8998, Pmd9607, Pmd9635, Pmd9645, Pmd9655, Pmi8937, Pmi8952, Pmi8994, Pmi8996, Pmi8998, Pmk8001, Pmm8996au, Pmx20, Qat3514, Qat3522, Qat3550, Qbt1000, Qbt1500, Qca6174, Qca6174a, Qca6310, Qca6320, Qca6564a, Qca6564au, Qca6574, Qca6574a, Qca6574au, Qca6584, Qca6584au, Qca9367, Qca9377, Qet4100, Qet4101, Qet4200aq, Qfe1035, Qfe1040, Qfe1045, Qfe2340, Qfe2550, Qfe3100, Qfe3320, Qfe3335, Qfe3345, Qln1021aq, Qln1030, Qln1031, Qln1036aq, Qpa4340, Qpa4360, Qpa5460, Qsw8573, Qtc800h, Qtc800s, Qtc800t, Rgr7640au, Rsw8577, Sd205, Sd210, Sd660, Sd820, Sd821, Sd835, Sd 636, Sdm630, Sdr660, Sdw2500, Sdw3100, Sdx20, Sdx20m, Smb1350, Smb1351, Smb1357, Smb1358, Smb1360, Smb1380, Smb231, Smb358s, Wcd9306, Wcd9326, Wcd9330, Wcd9335, Wcd9340, Wcd9341, Wcn3610, Wcn3615, Wcn3620, Wcn3660b, Wcn3680b, Wcn3980, Wcn3990, Wgr7640, Wsa8810, Wsa8815, Wtr2955, Wtr2965, Wtr3905, Wtr3925, Wtr3950, Wtr4905, Wtr5975
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions |
References (2)
Source: product-security@qualcomm.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Timeline
No history available yet.