CVE-2020-11183: Buffer Overflow

Published Jan 21, 2021
·
Updated

A process can potentially cause a buffer overflow in the display service allowing privilege escalation by executing code as that service in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

Affected Software

151 affected components
Qualcomm Apq8009
Qualcomm Apq8009w
Qualcomm Apq8017
Qualcomm Apq8037
Qualcomm Apq8053
Qualcomm APQ8096AU
Qualcomm Ar8151
Qualcomm MDM9206
Qualcomm Mdm9250
Qualcomm MDM9650
Qualcomm MDM9655
Qualcomm MSM8909W
Qualcomm MSM8917
Qualcomm Msm8920
Qualcomm MSM8937
Qualcomm Msm8940
Qualcomm Msm8953
Qualcomm MSM8996AU
Qualcomm Pm215
Qualcomm Pm439
Qualcomm Pm660
Qualcomm Pm660a
Qualcomm Pm660l
Qualcomm Pm8004
Qualcomm Pm8005
Qualcomm Pm855a
Qualcomm Pm8909
Qualcomm Pm8916
Qualcomm Pm8937
Qualcomm Pm8940
Qualcomm Pm8953
Qualcomm Pm8996
Qualcomm Pm8998
Qualcomm Pmd9607
Qualcomm Pmd9655
Qualcomm Pmi632
Qualcomm Pmi8937
Qualcomm Pmi8940
Qualcomm Pmi8952
Qualcomm Pmi8994
Qualcomm Pmi8996
Qualcomm Pmi8998
Qualcomm Pmk8001
Qualcomm Pmm855au
Qualcomm Pmm8996au
Qualcomm Pmx20
Qualcomm Qat3514
Qualcomm Qat3522
Qualcomm Qat3550
Qualcomm Qbt1000
Qualcomm Qbt1500
Qualcomm QCA6174A
Qualcomm Qca6310
Qualcomm Qca6320
Qualcomm Qca6564a
Qualcomm Qca6564au
Qualcomm Qca6574a
Qualcomm QCA6574AU
Qualcomm Qca6595
Qualcomm Qca6595au
Qualcomm Qca9367
Qualcomm QCA9377
Qualcomm QCA9379
Qualcomm Qcc1110
Qualcomm Qet4100
Qualcomm Qet4101
Qualcomm Qet4200aq
Qualcomm Qet5100
Qualcomm Qfe2080fc
Qualcomm Qfe2081fc
Qualcomm Qfe2082fc
Qualcomm Qfe2101
Qualcomm Qfe2550
Qualcomm Qfe3100
Qualcomm Qfe3440fc
Qualcomm Qfe4301
Qualcomm Qfe4302
Qualcomm Qfe4303
Qualcomm Qfe4305
Qualcomm Qfe4308
Qualcomm Qfe4309
Qualcomm Qfe4320
Qualcomm Qfe4373fc
Qualcomm Qfe4455fc
Qualcomm Qfe4465fc
Qualcomm Qln1021aq
Qualcomm Qln1030
Qualcomm Qln1031
Qualcomm Qln1035bd
Qualcomm Qln1036aq
Qualcomm Qpa4340
Qualcomm Qpa4360
Qualcomm Qpa5373
Qualcomm Qpa5460
Qualcomm Qsw8573
Qualcomm Qtc800h
Qualcomm Qtc800s
Qualcomm Qtc800t
Qualcomm Qtc801s
Qualcomm Qualcomm215
Qualcomm Rgr7640au
Qualcomm Rsw8577
Qualcomm Sd439
Qualcomm Sd450
Qualcomm Sd636
Qualcomm Sd660
Qualcomm Sd710
Qualcomm Sd712
Qualcomm Sd820
Qualcomm Sd821
Qualcomm Sd835
Qualcomm SDM630
Qualcomm Sdm830
Qualcomm Sdr051
Qualcomm Sdr052
Qualcomm Sdr660
Qualcomm Sdw2500
Qualcomm Sdw3100
Qualcomm SDX20
Qualcomm Sdx20m
Qualcomm Sdx50m
Qualcomm Smb1350
Qualcomm Smb1351
Qualcomm Smb1355
Qualcomm Smb1357
Qualcomm Smb1358
Qualcomm Smb1360
Qualcomm Smb1380
Qualcomm Smb231
Qualcomm Wcd9326
Qualcomm Wcd9330
Qualcomm Wcd9335
Qualcomm Wcd9340
Qualcomm Wcd9341
Qualcomm Wcn3615
Qualcomm Wcn3620
Qualcomm Wcn3660b
Qualcomm Wcn3680
Qualcomm Wcn3680b
Qualcomm Wcn3980
Qualcomm Wcn3990
Qualcomm Wgr7640
Qualcomm Wsa8810
Qualcomm Wsa8815
Qualcomm Wtr2955
Qualcomm Wtr2965
Qualcomm Wtr3905
Qualcomm Wtr3925
Qualcomm Wtr3950
Qualcomm Wtr4905
Qualcomm Wtr5975

Event History

Jan 21, 2021
CVE Published
via MITRE·09:41 AM
Data Sourced
via MITRE·09:41 AM
DescriptionWeakness
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2020-11183?

CVE-2020-11183 has a high severity rating due to its potential for buffer overflow and privilege escalation.

2

How do I fix CVE-2020-11183?

To fix CVE-2020-11183, update to the latest firmware as recommended by Qualcomm, addressing the vulnerability.

3

What devices are affected by CVE-2020-11183?

CVE-2020-11183 affects various Qualcomm Snapdragon devices across mobile, automotive, and industrial sectors.

4

Can CVE-2020-11183 be exploited remotely?

Yes, CVE-2020-11183 could potentially be exploited remotely due to its buffer overflow nature.

5

Is there a workaround for CVE-2020-11183?

Currently, there are no known workarounds for CVE-2020-11183, making the update to firmware critical.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203