CVE-2020-11167: Integer Overflow
Memory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-11167?
CVE-2020-11167 has been classified as a high-severity vulnerability due to potential memory corruption issues.
How do I fix CVE-2020-11167?
To fix CVE-2020-11167, update to the latest available software version provided by Qualcomm or impacted device manufacturers.
What systems are affected by CVE-2020-11167?
CVE-2020-11167 affects various Snapdragon architecture products including mobile devices, automotive, and IoT devices.
What type of vulnerability is CVE-2020-11167?
CVE-2020-11167 is a memory corruption vulnerability during the processing of L2CAP packets.
Could CVE-2020-11167 lead to remote code execution?
Yes, CVE-2020-11167 has the potential to allow remote code execution due to memory corruption.