First published: Mon Oct 05 2020(Updated: )
u'Buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap packet received from peer device.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in QCA6390, QCN7605, QCS404, SA415M, SA515M, SC8180X, SDX55, SM8250
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm Qca6390 Firmware | ||
Qualcomm Qca6390 | ||
Google Android | ||
Google Android | ||
Qualcomm Qcs404 Firmware | ||
Google Android | ||
Qualcomm Sa415m Firmware | ||
Google Android | ||
Qualcomm Sa515m Firmware | ||
Google Android | ||
Qualcomm Sc8180x Firmware | ||
Qualcomm Sc8180x | ||
Qualcomm Sdx55 Firmware | ||
Qualcomm Sdx55 | ||
Qualcomm Sm8250 Firmware | ||
Qualcomm SM8250 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2020-11156.
CVE-2020-11156 has a severity rating of 8.1 (High).
CVE-2020-11156 affects Google Android, Qualcomm Qca6390 Firmware, Qualcomm Qcs404 Firmware, Qualcomm Sa415m Firmware, Qualcomm Sa515m Firmware, Qualcomm Sc8180x Firmware, Qualcomm Sdx55 Firmware, and Qualcomm Sm8250 Firmware.
CVE-2020-11156 is a buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap packet received from peer device.
To fix CVE-2020-11156, it is recommended to apply the patches and updates provided by Google and Qualcomm.