First published: Mon Jan 04 2021(Updated: )
Out of bound access issue while handling cvp process control command due to improper validation of buffer pointer received from HLOS in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Android | ||
Qualcomm PM3003A | ||
Qualcomm pm3003a firmware | ||
Qualcomm PQ8009 Firmware | ||
Qualcomm PM8009 | ||
Qualcomm PM8150A Firmware | ||
Qualcomm PM8150A Firmware | ||
Qualcomm PM8150B Firmware | ||
Qualcomm PM8150B Firmware | ||
Qualcomm PM8150C Firmware | ||
Qualcomm PM8150C Firmware | ||
Qualcomm pm8150 firmware | ||
Qualcomm PM8150L | ||
Qualcomm PM8250 | ||
Qualcomm PM8250 Firmware | ||
Qualcomm pmk8002 | ||
Qualcomm PMK8002 Firmware | ||
Qualcomm PMR525 Firmware | ||
Qualcomm PMR525 Firmware | ||
Qualcomm PMX55 | ||
Qualcomm PMX55 | ||
Qualcomm QBT2000 | ||
Qualcomm QBT2000 | ||
Qualcomm QCA6390 Firmware | ||
Qualcomm QCA6390 Firmware | ||
Qualcomm QCA6391 Firmware | ||
Qualcomm QCA6391 Firmware | ||
qualcomm qca6421 firmware | ||
qualcomm qca6421 firmware | ||
Qualcomm QCA6426 Firmware | ||
Qualcomm QCA6426 Firmware | ||
Qualcomm QCA6431 Firmware | ||
Qualcomm QCA6431 | ||
Qualcomm QCA6436 Firmware | ||
Qualcomm QCA6436 Firmware | ||
Qualcomm QFS2530 | ||
Qualcomm QFS2530 | ||
Qualcomm QFS2580 | ||
Qualcomm QFS2580 | ||
qualcomm SM8250 firmware | ||
Qualcomm SM8250 | ||
Qualcomm qtc800h | ||
Qualcomm qtc800h firmware | ||
Qualcomm qtc801s | ||
Qualcomm qtc801s firmware | ||
Qualcomm Snapdragon 865 5G Firmware | ||
Qualcomm Snapdragon 865 5G Firmware | ||
Qualcomm SDR8250 firmware | ||
Qualcomm SDR8250 | ||
Qualcomm Snapdragon 865 5G Firmware | ||
Qualcomm SDR865 | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SDX55 Firmware | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SDXR2 5G Firmware | ||
Qualcomm SDXR2 5G Firmware | ||
Qualcomm SMB1355 Firmware | ||
Qualcomm SMB1355 Firmware | ||
Qualcomm SMB1390 | ||
Qualcomm SMB1390 Firmware | ||
Qualcomm smr525 firmware | ||
Qualcomm SMR525 | ||
Qualcomm SMR526 | ||
Qualcomm SMR526 | ||
Qualcomm WCD9380 | ||
Qualcomm WCD9380 Firmware | ||
Qualcomm WCD9385 | ||
Qualcomm WCD9385 Firmware | ||
qualcomm wcn6750 firmware | ||
qualcomm wcn6750 firmware | ||
Qualcomm WCN6850 Firmware | ||
Qualcomm WCN6850 Firmware | ||
Qualcomm WCN6851 Firmware | ||
Qualcomm WCN6851 Firmware | ||
Qualcomm WSA8810 | ||
Qualcomm WSA8810 Firmware | ||
qualcomm wsa8815 firmware | ||
qualcomm wsa8815 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-11181 has been assessed as high due to its potential to lead to unauthorized access or escalation of privileges.
To fix CVE-2020-11181, users should update their affected Qualcomm firmware to the latest version as recommended in the security bulletins.
CVE-2020-11181 affects various Qualcomm products, including Snapdragon Compute, Snapdragon Connectivity, and several specific firmware versions.
CVE-2020-11181 is an out-of-bounds access vulnerability which occurs due to improper validation of buffer pointers.
Yes, if unpatched, CVE-2020-11181 can potentially be exploited remotely, allowing attackers to manipulate process control commands.