CVE-2020-11266: Medium severity qualcomm ar7420 firmware vulnerability
Image address is dereferenced before validating its range which can cause potential QSEE information leakage in Snapdragon Wired Infrastructure and Networking
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-11266?
CVE-2020-11266 is a vulnerability that occurs when an image address is dereferenced before validating its range, potentially causing QSEE information leakage in Snapdragon Wired Infrastructure and Networking.
What software is affected by CVE-2020-11266?
The following software is affected: Qualcomm Ar7420 Firmware, Qualcomm Ar9580 Firmware, Qualcomm Csr8811 Firmware, Qualcomm Ipq4019 Firmware, Qualcomm Qca4024 Firmware, Qualcomm Qca7500 Firmware, Qualcomm Qca7520 Firmware, Qualcomm Qca7550 Firmware, Qualcomm Qcn3018 Firmware, Qualcomm Qfe1922 Firmware, Qualcomm Qfe1952 Firmware, Qualcomm Wcd9340 Firmware, Qualcomm Wsa8810 Firmware.
What is the severity of CVE-2020-11266?
The severity of CVE-2020-11266 is medium with a CVSS score of 6.5.
What is QSEE?
QSEE stands for Qualcomm Secure Execution Environment, which is a trusted execution environment on Qualcomm Snapdragon processors.
Where can I find more information about CVE-2020-11266?
You can find more information about CVE-2020-11266 on the Qualcomm Product Security Bulletin for January 2021.