CVE-2020-11208
Summary
| CVE | CVE-2020-11208 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-11-12 10:15:00 UTC |
| Updated | 2022-10-19 15:43:00 UTC |
| Description | Out of Bound issue in DSP services while processing received arguments due to improper validation of length received as an argument' in SD820, SD821, SD820, QCS603, QCS605, SDA855, SA6155P, SA6145P, SA6155, SA6155P, SD855, SD 675, SD660, SD429, SD439 |
Risk And Classification
Problem Types: CWE-191
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Qualcomm | Qcs603 | - | All | All | All |
| Hardware | Qualcomm | Qcs603 | - | All | All | All |
| Operating System | Qualcomm | Qcs603 Firmware | - | All | All | All |
| Operating System | Qualcomm | Qcs603 Firmware | - | All | All | All |
| Hardware | Qualcomm | Qcs605 | - | All | All | All |
| Hardware | Qualcomm | Qcs605 | - | All | All | All |
| Operating System | Qualcomm | Qcs605 Firmware | - | All | All | All |
| Operating System | Qualcomm | Qcs605 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sa6145p | - | All | All | All |
| Hardware | Qualcomm | Sa6145p | - | All | All | All |
| Operating System | Qualcomm | Sa6145p Firmware | - | All | All | All |
| Operating System | Qualcomm | Sa6145p Firmware | - | All | All | All |
| Hardware | Qualcomm | Sa6155 | - | All | All | All |
| Hardware | Qualcomm | Sa6155 | - | All | All | All |
| Hardware | Qualcomm | Sa6155p | - | All | All | All |
| Hardware | Qualcomm | Sa6155p | - | All | All | All |
| Operating System | Qualcomm | Sa6155p Firmware | - | All | All | All |
| Operating System | Qualcomm | Sa6155p Firmware | - | All | All | All |
| Operating System | Qualcomm | Sa6155 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sa6155 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd429 | - | All | All | All |
| Hardware | Qualcomm | Sd429 | - | All | All | All |
| Operating System | Qualcomm | Sd429 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd429 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd439 | - | All | All | All |
| Hardware | Qualcomm | Sd439 | - | All | All | All |
| Operating System | Qualcomm | Sd439 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd439 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd660 | - | All | All | All |
| Hardware | Qualcomm | Sd660 | - | All | All | All |
| Operating System | Qualcomm | Sd660 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd660 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd675 | - | All | All | All |
| Hardware | Qualcomm | Sd675 | - | All | All | All |
| Operating System | Qualcomm | Sd675 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd675 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd820 | - | All | All | All |
| Hardware | Qualcomm | Sd820 | - | All | All | All |
| Operating System | Qualcomm | Sd820 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd820 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd821 | - | All | All | All |
| Hardware | Qualcomm | Sd821 | - | All | All | All |
| Operating System | Qualcomm | Sd821 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd821 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd855 | - | All | All | All |
| Hardware | Qualcomm | Sd855 | - | All | All | All |
| Operating System | Qualcomm | Sd855 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd855 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sda855 | - | All | All | All |
| Hardware | Qualcomm | Sda855 | - | All | All | All |
| Operating System | Qualcomm | Sda855 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sda855 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Pwn2Own Qualcomm DSP - Check Point Research | MISC | research.checkpoint.com | |
| Achilles: Small chip, big peril. - Check Point Software | MISC | blog.checkpoint.com | |
| Page not found | CONFIRM | www.qualcomm.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.