CVE-2020-11153

u'Out of bound memory access while processing GATT data received due to lack of check of pdu data length and leads to remote code execution' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8053, QCA6390, QCA9379, QCN7605, SC8180X, SDX55
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:apq8053_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8053:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:qca6390_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6390:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:qca9379_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca9379:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:qcn7605_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcn7605:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:sc8180x_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sc8180x:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:sdx55_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdx55:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:56

Type Values Removed Values Added
References () https://www.qualcomm.com/company/product-security/bulletins/october-2020-bulletin - Broken Link () https://www.qualcomm.com/company/product-security/bulletins/october-2020-bulletin - Broken Link

Information

Published : 2020-11-02 07:15

Updated : 2024-11-21 04:56


NVD link : CVE-2020-11153

Mitre link : CVE-2020-11153

CVE.ORG link : CVE-2020-11153


JSON object : View

Products Affected

qualcomm

  • qca6390_firmware
  • apq8053
  • apq8053_firmware
  • qca9379
  • sdx55_firmware
  • qcn7605_firmware
  • sc8180x_firmware
  • sc8180x
  • qcn7605
  • sdx55
  • qca9379_firmware
  • qca6390
CWE
CWE-787

Out-of-bounds Write