First published: Mon May 04 2020(Updated: )
When making query to DSP capabilities, Stack out of bounds occurs due to wrong buffer length configured for DSP attributes in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile in SM8250, SXR2130
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm Sm8250 Firmware | ||
Qualcomm SM8250 | ||
Qualcomm Sxr2130 Firmware | ||
Qualcomm Sxr2130 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-3625 is classified as a high severity vulnerability due to the potential for stack out of bounds issues.
Fixing CVE-2020-3625 involves updating affected Qualcomm firmware to a version that resolves the buffer length misconfiguration.
CVE-2020-3625 affects Qualcomm Snapdragon Auto, Snapdragon Consumer IoT, and Snapdragon Mobile products, particularly the SM8250 and SXR2130.
CVE-2020-3625 can lead to a stack out of bounds condition, potentially allowing for arbitrary code execution or crashing of the affected devices.
CVE-2020-3625 is a software vulnerability that arises from improper handling of DSP attributes in Qualcomm's firmware.