First published: Fri May 07 2021(Updated: )
Memory corruption during buffer allocation due to dereferencing session ctx pointer without checking if pointer is valid in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm PM6150 | ||
Qualcomm PM6150 | ||
Qualcomm pm6350 firmware | ||
Qualcomm pm660 firmware | ||
Qualcomm PM660L Firmware | ||
Qualcomm PM7250B Firmware | ||
Qualcomm PM8008 Firmware | ||
Qualcomm PM8009 | ||
Qualcomm PM8350 Firmware | ||
Qualcomm PM8350B Firmware | ||
Qualcomm PM8350BH Firmware | ||
Qualcomm PM8350C Firmware | ||
Qualcomm pmk8003 firmware | ||
Qualcomm pmk8350 firmware | ||
Qualcomm PMM6155AU Firmware | ||
Qualcomm PMM8155AU Firmware | ||
Qualcomm PMM8195AU firmware | ||
Qualcomm pmr735a firmware | ||
Qualcomm PMR735B | ||
Qualcomm qat3516 firmware | ||
Qualcomm QAT 3518 | ||
Qualcomm QAT3519 Firmware | ||
Qualcomm QAT 3555 Firmware | ||
Qualcomm QAT 5515 Firmware | ||
Qualcomm QAT5516 Firmware | ||
Qualcomm QAT 5522 | ||
Qualcomm qat5568 firmware | ||
Qualcomm qbt1500 firmware | ||
Qualcomm QCA6574AU | ||
Qualcomm QCA6696 Firmware | ||
Qualcomm QDM3301 Firmware | ||
Qualcomm qdm4643 firmware | ||
Qualcomm qdm4650 firmware | ||
Qualcomm qdm5620 firmware | ||
Qualcomm QDM5621 | ||
Qualcomm qdm5670 firmware | ||
Qualcomm qdm5671 firmware | ||
Qualcomm QET5100 Firmware | ||
Qualcomm QET5100M Firmware | ||
Qualcomm QET6100 Firmware | ||
Qualcomm QET6105 Firmware | ||
Qualcomm QET6110 Firmware | ||
Qualcomm QFS2530 | ||
Qualcomm QFS2580 | ||
Qualcomm QFS2608 | ||
Qualcomm QFS2630 Firmware | ||
Qualcomm QLN4642 Firmware | ||
Qualcomm QLN4650 | ||
Qualcomm QLN5020 Firmware | ||
Qualcomm QLN5030 Firmware | ||
Qualcomm QLN5040 Firmware | ||
Qualcomm qpa2625 firmware | ||
Qualcomm qpa5461 firmware | ||
Qualcomm QPA5580 Firmware | ||
Qualcomm QPA5581 | ||
Qualcomm qpa8801 firmware | ||
Qualcomm QPA8802 | ||
Qualcomm qpa8803 firmware | ||
Qualcomm QPA8821 Firmware | ||
Qualcomm qpa8842 firmware | ||
Qualcomm qpm4621 firmware | ||
Qualcomm QPM4630 | ||
Qualcomm QPM4640 | ||
Qualcomm QPM4641 Firmware | ||
Qualcomm QPM4650 Firmware | ||
Qualcomm QPM5621 Firmware | ||
Qualcomm QPM5641 Firmware | ||
Qualcomm QPM5670 | ||
Qualcomm QPM5677 Firmware | ||
Qualcomm QPM5679 | ||
Qualcomm qpm5870 firmware | ||
Qualcomm QPM5875 Firmware | ||
Qualcomm QPM6585 Firmware | ||
Qualcomm QPM6621 | ||
Qualcomm QPM6670 Firmware | ||
Qualcomm QPM8820 | ||
Qualcomm QPM8870 Firmware | ||
Qualcomm QTC800H Firmware | ||
Qualcomm QTC800S Firmware | ||
Qualcomm QTC801S Firmware | ||
Qualcomm QTM525 Firmware | ||
Qualcomm SA6145P Firmware | ||
Qualcomm SA6150P Firmware | ||
Qualcomm SA6155P | ||
Qualcomm SA8150P Firmware | ||
Qualcomm SA8155P Firmware | ||
Qualcomm SA8195P Firmware | ||
Qualcomm Snapdragon 480 | ||
Qualcomm SD 670 | ||
Qualcomm SD710 Firmware | ||
Qualcomm Snapdragon 888 Firmware | ||
Qualcomm Snapdragon 888 5G | ||
Qualcomm SDR660 | ||
Qualcomm SDR660G Firmware | ||
Qualcomm SDR735G Firmware | ||
Qualcomm SDR735G Firmware | ||
Qualcomm SDR865 | ||
Qualcomm SDXR1 Firmware | ||
Qualcomm SMB1351 Firmware | ||
Qualcomm SMB1355 Firmware | ||
Qualcomm SMB1396 Firmware | ||
Qualcomm SMB1398 | ||
Qualcomm SMR526 | ||
Qualcomm SMR545 Firmware | ||
Qualcomm SMR546 | ||
Qualcomm WCD9326 Firmware | ||
Qualcomm WCD9341 Firmware | ||
Qualcomm WCD9370 Firmware | ||
Qualcomm WCD9375 Firmware | ||
Qualcomm WCD9380 Firmware | ||
Qualcomm WCD9385 Firmware | ||
Qualcomm WCN3980 | ||
Qualcomm WCN3988 Firmware | ||
Qualcomm WCN3990 | ||
Qualcomm WCN3991 Firmware | ||
Qualcomm WCN6850 Firmware | ||
Qualcomm WCN6851 Firmware | ||
Qualcomm WCN6855 Firmware | ||
Qualcomm WCN6856 Firmware | ||
Qualcomm WSA8830 | ||
Qualcomm WSA8835 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-11254 is rated as high severity due to its potential for memory corruption.
To fix CVE-2020-11254, apply the latest firmware updates provided by Qualcomm for affected devices.
CVE-2020-11254 affects various Snapdragon models including PM6150A, PM6350, and several others.
CVE-2020-11254 is a memory corruption vulnerability caused by dereferencing an invalid session context pointer.
As of the latest information, there is no evidence indicating that CVE-2020-11254 is actively being exploited in the wild.