CVE-2020-11128: Out-of-bounds Read
u'Possible out of bound access while copying the mask file content into the buffer without checking the buffer size' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8096AU, APQ8098, Bitra, Kamorta, MDM9150, MDM9607, MDM9650, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8998, QCM2150, QCS405, QCS605, QCS610, QM215, Rennell, SA515M, SA6155P, Saipan, SC8180X, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM660, SDM670, SDM710, SDM845, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-11128?
CVE-2020-11128 has a medium severity rating due to potential out-of-bounds access that may lead to information disclosure or system instability.
How do I fix CVE-2020-11128?
To fix CVE-2020-11128, ensure that you apply the latest firmware updates provided by Qualcomm or the affected device manufacturer.
Which devices are affected by CVE-2020-11128?
CVE-2020-11128 affects various Qualcomm Snapdragon platforms, including but not limited to APQ8009, APQ8096AU, and MSM8998 based devices.
What are the potential impacts of CVE-2020-11128?
The potential impacts of CVE-2020-11128 include unauthorized access to memory, which could lead to system crashes or exposure of sensitive information.
Is there a workaround for CVE-2020-11128?
Currently, the best approach for CVE-2020-11128 is to apply the security patches, as there are no effective workarounds to mitigate the vulnerability.