CVE-2020-11286: Buffer Overflow
An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface & endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-11286?
CVE-2020-11286 has been classified as a high-severity vulnerability due to the potential for unauthorized access and data manipulation.
How do I fix CVE-2020-11286?
To address CVE-2020-11286, ensure that all affected Qualcomm devices are updated with the latest firmware provided by the vendor.
Which devices are affected by CVE-2020-11286?
CVE-2020-11286 affects a range of Qualcomm Snapdragon devices, including models from the Automotive, Consumer IoT, Industrial IoT, and Mobile categories.
What causes CVE-2020-11286?
CVE-2020-11286 is caused by an untrusted pointer dereference that occurs during USB control transfers when multiple requests of different categories are made simultaneously.
Is CVE-2020-11286 actively exploited?
As of the last updates, there is no public indication that CVE-2020-11286 is being actively exploited in the wild.