First published: Thu Nov 12 2020(Updated: )
u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8096AU, APQ8098, MDM8207, MDM9150, MDM9205, MDM9206, MDM9207, MDM9250, MDM9607, MDM9628, MDM9650, MSM8108, MSM8208, MSM8209, MSM8608, MSM8905, MSM8909, MSM8998, QCM4290, QCS405, QCS410, QCS4290, QCS603, QCS605, QCS610, QSM8250, SA415M, SA515M, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155, SA8155P, SA8195P, SC7180, SC8180X, SC8180X+SDX55, SC8180XP, SDA640, SDA670, SDA845, SDA855, SDM1000, SDM640, SDM670, SDM710, SDM712, SDM830, SDM845, SDM850, SDX24, SDX50M, SDX55, SDX55M, SM4125, SM4250, SM4250P, SM6115, SM6115P, SM6125, SM6150, SM6150P, SM6250, SM6250P, SM6350, SM7125, SM7150, SM7150P, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SXR1120, SXR1130, SXR2130, SXR2130P, WCD9330
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm APQ8009W Firmware | ||
Qualcomm APQ8009 Firmware | ||
Qualcomm APQ8096AU Firmware | ||
Qualcomm APQ8096AU Firmware | ||
Qualcomm 8098 Firmware | ||
Qualcomm APQ8098 | ||
Qualcomm MDM8207 | ||
Qualcomm MDM8207 Firmware | ||
Qualcomm MDM9150 Firmware | ||
Qualcomm MDM9150 firmware | ||
Qualcomm 9205 Firmware | ||
Qualcomm 9205 | ||
Qualcomm MDM9206 | ||
Qualcomm MDM9206 firmware | ||
qualcomm MDM9207C firmware | ||
qualcomm MDM9207C firmware | ||
Qualcomm MDM9250 | ||
Qualcomm MDM9250 Firmware | ||
Qualcomm MD9607 Firmware | ||
Qualcomm MDM9607 firmware | ||
Qualcomm MDM9628 Firmware | ||
Qualcomm MDM9628 | ||
Qualcomm MDM9650 | ||
Qualcomm MDM9650 firmware | ||
Qualcomm MSM8108 Firmware | ||
Qualcomm MSM8108 Firmware | ||
Qualcomm MSM8208 Firmware | ||
qualcomm msm8208 firmware | ||
Qualcomm MSM8209 Firmware | ||
Qualcomm MSM8209 Firmware | ||
Qualcomm MSM8608 | ||
Qualcomm MSM8608 | ||
Qualcomm 8905 Firmware | ||
Qualcomm 8905 | ||
Qualcomm 8909 Firmware | ||
Qualcomm MSM8909W | ||
Qualcomm MSM8998 | ||
Qualcomm 8998 | ||
Qualcomm QCM4290 | ||
Qualcomm QCM4290 Firmware | ||
Qualcomm QCS405 Firmware | ||
Qualcomm QCS405 Firmware | ||
Qualcomm QCS410 Firmware | ||
Qualcomm QCS410 Firmware | ||
Qualcomm QCS4290 Firmware | ||
Qualcomm QCS4290 Firmware | ||
Qualcomm QCS603 | ||
Qualcomm QCS603 Firmware | ||
Qualcomm QCS605 | ||
Qualcomm QCS605 Firmware | ||
Qualcomm QCS610 Firmware | ||
Qualcomm QCS610 Firmware | ||
qualcomm SM8250 firmware | ||
Qualcomm QSM8250 | ||
Qualcomm SA415M Firmware | ||
Qualcomm SA415M Firmware | ||
Qualcomm SA515M Firmware | ||
Qualcomm SA515M Firmware | ||
Qualcomm SA6145P Firmware | ||
Qualcomm SA6145P Firmware | ||
Qualcomm SA6150P Firmware | ||
Qualcomm SA6150P Firmware | ||
Qualcomm SA6155 | ||
Qualcomm SA6155 Firmware | ||
Qualcomm SA6155 | ||
Qualcomm SA6155P | ||
Qualcomm SA8150P Firmware | ||
Qualcomm SA8150P Firmware | ||
Qualcomm SA8155P Firmware | ||
Qualcomm SA8155 Firmware | ||
Qualcomm SA8155 | ||
Qualcomm SA8155P Firmware | ||
Qualcomm SA8195P | ||
Qualcomm SA8195P Firmware | ||
Qualcomm SC7180P Firmware | ||
Qualcomm SC7180P Firmware | ||
qualcomm SC8180X firmware | ||
Qualcomm SC8180X | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SDX55 Firmware | ||
Qualcomm SC8380XP Firmware | ||
Qualcomm SC8180XP | ||
Qualcomm SDA640 | ||
Qualcomm SDA640 Firmware | ||
Qualcomm SDA670 | ||
Qualcomm SDA670 | ||
Qualcomm SD 845 Firmware | ||
Qualcomm Snapdragon 845 | ||
Qualcomm SDA855 Firmware | ||
Qualcomm SDA855 Firmware | ||
Qualcomm SDM1000 Firmware | ||
Qualcomm SDM1000 Firmware | ||
qualcomm SDM640 firmware | ||
Qualcomm SDM640 | ||
Qualcomm SD 670 Firmware | ||
Qualcomm SDM670 Firmware | ||
Qualcomm SD 710 Firmware | ||
Qualcomm Snapdragon 710 | ||
Qualcomm Snapdragon 712 Firmware | ||
Qualcomm Snapdragon 712 | ||
Qualcomm SDM830 Firmware | ||
Qualcomm Snapdragon 830 | ||
Qualcomm SDA/SDM845 Firmware | ||
Qualcomm Snapdragon 845 | ||
Qualcomm Snapdragon 850 Firmware | ||
Qualcomm SD850 | ||
Qualcomm SDX24 | ||
Qualcomm SDX24 | ||
Qualcomm SDX50M Firmware | ||
Qualcomm SDX50M Firmware | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SM4125 | ||
Qualcomm SM4125 Firmware | ||
qualcomm sm4250-aa firmware | ||
Qualcomm SM4250 Firmware | ||
qualcomm SM4250P firmware | ||
Qualcomm SA4250P | ||
Qualcomm SM6115 | ||
Qualcomm SM6115 Firmware | ||
Qualcomm SM6115 Firmware | ||
qualcomm SM6115P firmware | ||
Qualcomm SM6125 | ||
Qualcomm SM6125 Firmware | ||
Qualcomm SM6150P firmware | ||
Qualcomm SM6150P | ||
Qualcomm SM6150P firmware | ||
Qualcomm SM6150P firmware | ||
Qualcomm SM6250P Firmware | ||
Qualcomm SM6250 Firmware | ||
Qualcomm SM6250 Firmware | ||
Qualcomm SM6250P Firmware | ||
Qualcomm SM6350 Firmware | ||
qualcomm sm6350 firmware | ||
Qualcomm SM7125 | ||
Qualcomm SM7125 Firmware | ||
qualcomm SM7150P firmware | ||
qualcomm SM7150 firmware | ||
qualcomm SM7150 firmware | ||
qualcomm SM7150P firmware | ||
Qualcomm SM7225 | ||
Qualcomm SM7225 | ||
Qualcomm SSM7250-AA Firmware | ||
Qualcomm SSM7250-AA Firmware | ||
Qualcomm SM7250 Firmware | ||
Qualcomm SM7250 | ||
Qualcomm SM8150P Firmware | ||
Qualcomm SM8150 Fusion | ||
Qualcomm SM8150 Firmware | ||
Qualcomm SA8150P | ||
Qualcomm SM8250 | ||
qualcomm SM8250 firmware | ||
Qualcomm SXR1120 | ||
Qualcomm SXR1120 | ||
Qualcomm SXR1130 | ||
Qualcomm SXR1130 Firmware | ||
Qualcomm SXR2130P Firmware | ||
Qualcomm SXR2130 Firmware | ||
Qualcomm SXR2130P Firmware | ||
Qualcomm SXR2130 | ||
Qualcomm WCD9330 | ||
Qualcomm WCD9330 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-11132 has been assigned a medium severity rating due to the potential for a buffer over read vulnerability.
To fix CVE-2020-11132, update to the latest firmware version provided by Qualcomm that addresses this vulnerability.
CVE-2020-11132 affects various Snapdragon platforms including APQ8009, APQ8096AU, and MDM9205 among others.
Yes, CVE-2020-11132 can potentially be exploited remotely, allowing an attacker to manipulate the device.
In the context of CVE-2020-11132, a buffer over read allows an attacker to read unintended memory locations, which may expose sensitive information.