CVE-2020-11140: Critical severity android vulnerability
Out of bound memory access during music playback with ALAC modified content due to improper validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-11140?
CVE-2020-11140 is classified as a high severity vulnerability due to its potential for exploitation during music playback.
How do I fix CVE-2020-11140?
To fix CVE-2020-11140, you should apply the latest security updates released by your device manufacturer or Qualcomm.
What products are affected by CVE-2020-11140?
CVE-2020-11140 affects various Qualcomm Snapdragon-related products, including those running Android.
How does CVE-2020-11140 impact device security?
CVE-2020-11140 allows for out-of-bounds memory access which could lead to unauthorized code execution during music playback.
Has CVE-2020-11140 been publicly disclosed?
Yes, CVE-2020-11140 has been publicly disclosed as part of a security bulletin issued by Qualcomm.