CVE-2020-11286

An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface & endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Configurations

Configuration 1 (hide)

OR cpe:2.3:h:qualcomm:apq8009:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8009w:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8017:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8053:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8064au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8076:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8096au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:ar8151:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:csr6030:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9206:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9230:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9250:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9330:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9607:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9626:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9628:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9630:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9640:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9650:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9655:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8909w:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8937:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8996au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm660:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm660a:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm660l:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm8004:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm8005:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm8909:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm8916:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm8937:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm8952:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm8953:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm8956:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm8996:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pm8998:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmd9607:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmd9635:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmd9645:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmd9655:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmi8937:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmi8952:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmi8994:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmi8996:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmi8998:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmk8001:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmm8996au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:pmx20:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qat3514:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qat3522:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qat3550:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qbt1000:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qbt1500:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6174:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6174a:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6310:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6320:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6564a:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6564au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574a:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6584:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6584au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca9367:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca9377:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qet4100:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qet4101:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qet4200aq:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfe1035:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfe1040:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfe1045:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfe2340:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfe2550:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfe3100:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfe3320:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfe3335:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfe3345:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qln1021aq:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qln1030:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qln1031:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qln1036aq:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qpa4340:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qpa4360:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qpa5460:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qsw8573:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qtc800h:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qtc800s:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qtc800t:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:rgr7640au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:rsw8577:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_636:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd205:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd210:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd660:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd820:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd821:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd835:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdm630:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdr660:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdw2500:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdw3100:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdx20:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdx20m:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:smb1350:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:smb1351:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:smb1357:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:smb1358:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:smb1360:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:smb1380:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:smb231:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:smb358s:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9306:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9326:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9330:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9335:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9340:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9341:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3610:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3615:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3680b:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3990:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wgr7640:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8810:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8815:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wtr2955:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wtr2965:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wtr3905:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wtr3925:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wtr3950:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wtr4905:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wtr5975:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:57

Type Values Removed Values Added
References () https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin - Patch, Vendor Advisory () https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin - Patch, Vendor Advisory

Information

Published : 2021-02-22 07:15

Updated : 2024-11-21 04:57


NVD link : CVE-2020-11286

Mitre link : CVE-2020-11286

CVE.ORG link : CVE-2020-11286


JSON object : View

Products Affected

qualcomm

  • qfe3335
  • apq8053
  • wcn3660b
  • mdm9650
  • msm8909w
  • qpa4340
  • wcn3620
  • qln1036aq
  • mdm9330
  • apq8076
  • pm8952
  • sdx20
  • mdm9626
  • pmi8994
  • qfe1040
  • smb1358
  • wcd9306
  • qfe2550
  • qsw8573
  • qet4100
  • wtr4905
  • apq8096au
  • qpa5460
  • sdw3100
  • qtc800t
  • mdm9655
  • pmd9655
  • wcd9326
  • wtr2965
  • wcn3980
  • smb1360
  • mdm9206
  • wcd9340
  • qfe3320
  • pm660a
  • wcd9335
  • pm8004
  • pmi8952
  • qfe3100
  • pm8953
  • sd821
  • mdm9630
  • pm8916
  • wcn3680b
  • apq8064au
  • rsw8577
  • wcn3610
  • pm8996
  • wcn3990
  • qet4200aq
  • mdm9628
  • ar8151
  • qfe1035
  • sd_636
  • mdm9640
  • qca6584au
  • qbt1500
  • smb1350
  • csr6030
  • wgr7640
  • wtr3925
  • wcd9330
  • mdm9607
  • qet4101
  • pmi8996
  • smb231
  • qln1021aq
  • pm660
  • qca6310
  • qca6574au
  • qca6574
  • qat3514
  • wtr5975
  • wcn3615
  • msm8996au
  • wsa8810
  • qca6174
  • sd835
  • mdm9250
  • pmd9635
  • sdr660
  • pm8998
  • pmd9645
  • smb358s
  • pmi8998
  • qca6574a
  • sd210
  • pm8937
  • sd820
  • sdm630
  • wcd9341
  • pmk8001
  • apq8017
  • pmm8996au
  • qat3550
  • msm8937
  • wtr3905
  • pmx20
  • wsa8815
  • qca6320
  • qln1031
  • qtc800h
  • qfe1045
  • pm8005
  • mdm9230
  • rgr7640au
  • qca6564a
  • qca6174a
  • qpa4360
  • wtr2955
  • smb1351
  • qln1030
  • apq8009w
  • pmd9607
  • qfe2340
  • sdw2500
  • qca9377
  • qca6564au
  • qfe3345
  • sdx20m
  • pm660l
  • qtc800s
  • pm8956
  • pmi8937
  • sd660
  • qca9367
  • wtr3950
  • smb1357
  • qca6584
  • apq8009
  • qbt1000
  • qat3522
  • smb1380
  • pm8909
  • sd205
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer