CVE-2020-3640
Summary
| CVE | CVE-2020-3640 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-09-08 10:15:00 UTC |
| Updated | 2020-09-14 16:54:00 UTC |
| Description | u'Resizing the usage table header before passing all the checks leads to the function exiting with a usage table in invalid state when a HLOS adversary calls the function with wrong input' in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in Bitra, Kamorta, QCS404, QCS610, Rennell, Saipan, SC7180, SDX55, SM6150, SM7150, SM8250, SXR2130 |
Risk And Classification
Problem Types: CWE-131
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Qualcomm | Bitra | - | All | All | All |
| Hardware | Qualcomm | Bitra | - | All | All | All |
| Operating System | Qualcomm | Bitra Firmware | - | All | All | All |
| Operating System | Qualcomm | Bitra Firmware | - | All | All | All |
| Hardware | Qualcomm | Kamorta | - | All | All | All |
| Hardware | Qualcomm | Kamorta | - | All | All | All |
| Operating System | Qualcomm | Kamorta Firmware | - | All | All | All |
| Operating System | Qualcomm | Kamorta Firmware | - | All | All | All |
| Hardware | Qualcomm | Qcs404 | - | All | All | All |
| Hardware | Qualcomm | Qcs404 | - | All | All | All |
| Operating System | Qualcomm | Qcs404 Firmware | - | All | All | All |
| Operating System | Qualcomm | Qcs404 Firmware | - | All | All | All |
| Hardware | Qualcomm | Qcs610 | - | All | All | All |
| Hardware | Qualcomm | Qcs610 | - | All | All | All |
| Operating System | Qualcomm | Qcs610 Firmware | - | All | All | All |
| Operating System | Qualcomm | Qcs610 Firmware | - | All | All | All |
| Hardware | Qualcomm | Rennell | - | All | All | All |
| Hardware | Qualcomm | Rennell | - | All | All | All |
| Operating System | Qualcomm | Rennell Firmware | - | All | All | All |
| Operating System | Qualcomm | Rennell Firmware | - | All | All | All |
| Hardware | Qualcomm | Saipan | - | All | All | All |
| Hardware | Qualcomm | Saipan | - | All | All | All |
| Operating System | Qualcomm | Saipan Firmware | - | All | All | All |
| Operating System | Qualcomm | Saipan Firmware | - | All | All | All |
| Hardware | Qualcomm | Sc7180 | - | All | All | All |
| Hardware | Qualcomm | Sc7180 | - | All | All | All |
| Operating System | Qualcomm | Sc7180 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sc7180 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sdx55 | - | All | All | All |
| Hardware | Qualcomm | Sdx55 | - | All | All | All |
| Operating System | Qualcomm | Sdx55 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sdx55 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sm6150 | - | All | All | All |
| Hardware | Qualcomm | Sm6150 | - | All | All | All |
| Operating System | Qualcomm | Sm6150 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sm6150 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sm7150 | - | All | All | All |
| Hardware | Qualcomm | Sm7150 | - | All | All | All |
| Operating System | Qualcomm | Sm7150 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sm7150 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sm8250 | - | All | All | All |
| Hardware | Qualcomm | Sm8250 | - | All | All | All |
| Operating System | Qualcomm | Sm8250 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sm8250 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sxr2130 | - | All | All | All |
| Hardware | Qualcomm | Sxr2130 | - | All | All | All |
| Operating System | Qualcomm | Sxr2130 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sxr2130 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| August 2020 Bulletin | MISC | www.qualcomm.com | Vendor Advisory |
| August 2020 Security Bulletin | Qualcomm | CONFIRM | www.qualcomm.com | Broken Link |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.