CVE-2020-11130: Buffer Overflow
u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290, QCS4290, QM215, QSM8350, SA6145P, SA6155, SA6155P, SA8155, SA8155P, SC8180X, SC8180XP, SDX55, SDX55M, SM4250, SM4250P, SM6115, SM6115P, SM6125, SM6250, SM6350, SM7125, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SM8350, SM8350P, SXR2130, SXR2130P
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-11130.
What is the severity of CVE-2020-11130?
The severity of CVE-2020-11130 is high with a CVSS score of 7.8.
Which products are affected by CVE-2020-11130?
The affected products include Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile, QCM4290, QCS4290, QM215, QSM8350, SA6145P, SA6155, SA6155P, SA8155, SA8155P, SC8180X, SC8180XP, SDX55, and SDX55M.
What is the description of CVE-2020-11130?
The vulnerability is a possible buffer overflow in the WIFI hal process, which occurs due to copying data without checking the buffer length.
Is there a fix available for CVE-2020-11130?
Yes, a fix is available for CVE-2020-11130. Please refer to the official Qualcomm bulletin at https://www.qualcomm.com/company/product-security/bulletins/november-2020-bulletin for more information.