CVE-2020-11153
Summary
| CVE | CVE-2020-11153 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-11-02 07:15:00 UTC |
| Updated | 2020-11-03 17:38:00 UTC |
| Description | u'Out of bound memory access while processing GATT data received due to lack of check of pdu data length and leads to remote code execution' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8053, QCA6390, QCA9379, QCN7605, SC8180X, SDX55 |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Qualcomm | Apq8053 | - | All | All | All |
| Hardware | Qualcomm | Apq8053 | - | All | All | All |
| Operating System | Qualcomm | Apq8053 Firmware | - | All | All | All |
| Operating System | Qualcomm | Apq8053 Firmware | - | All | All | All |
| Hardware | Qualcomm | Qca6390 | - | All | All | All |
| Hardware | Qualcomm | Qca6390 | - | All | All | All |
| Operating System | Qualcomm | Qca6390 Firmware | - | All | All | All |
| Operating System | Qualcomm | Qca6390 Firmware | - | All | All | All |
| Hardware | Qualcomm | Qca9379 | - | All | All | All |
| Hardware | Qualcomm | Qca9379 | - | All | All | All |
| Operating System | Qualcomm | Qca9379 Firmware | - | All | All | All |
| Operating System | Qualcomm | Qca9379 Firmware | - | All | All | All |
| Hardware | Qualcomm | Qcn7605 | - | All | All | All |
| Hardware | Qualcomm | Qcn7605 | - | All | All | All |
| Operating System | Qualcomm | Qcn7605 Firmware | - | All | All | All |
| Operating System | Qualcomm | Qcn7605 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sc8180x | - | All | All | All |
| Hardware | Qualcomm | Sc8180x | - | All | All | All |
| Operating System | Qualcomm | Sc8180x Firmware | - | All | All | All |
| Operating System | Qualcomm | Sc8180x Firmware | - | All | All | All |
| Hardware | Qualcomm | Sdx55 | - | All | All | All |
| Hardware | Qualcomm | Sdx55 | - | All | All | All |
| Operating System | Qualcomm | Sdx55 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sdx55 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| October 2020 Security Bulletin | Qualcomm | MISC | www.qualcomm.com | Vendor Advisory |
| Page not found | CONFIRM | www.qualcomm.com | Broken Link |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.