CVE-2020-11197: Integer Overflow
Possible integer overflow can occur when stream info update is called when total number of streams detected are zero while parsing TS clip with invalid data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-11197?
CVE-2020-11197 is rated as a high severity vulnerability due to potential integer overflow leading to exploitable conditions.
How do I fix CVE-2020-11197?
To fix CVE-2020-11197, update to the latest version of affected Qualcomm software or apply patches provided by your device manufacturer.
What devices are affected by CVE-2020-11197?
CVE-2020-11197 affects a range of Qualcomm chipsets including those used in Android devices and various IoT products.
What types of attacks can exploit CVE-2020-11197?
Exploitation of CVE-2020-11197 could allow attackers to execute arbitrary code or cause a denial of service through crafted data streams.
Is there a workaround for CVE-2020-11197?
There is no specific workaround for CVE-2020-11197 other than applying the vendor's recommended updates or patches.