CVE-2020-3628: Critical severity Google Android vulnerability
Published Jun 1, 2020
·Updated
Improper access due to socket opened by the logging application without specifying localhost address in Snapdragon Consumer IOT, Snapdragon Mobile in APQ8053, Rennell, SDX20
Affected Software
7 affected components
Google Android
Qualcomm Apq8053 Firmware
Qualcomm Apq8053
Qualcomm Rennell Firmware
Qualcomm Rennell
Qualcomm Sdx20 Firmware
Qualcomm SDX20
Event History
Jun 1, 2020
CVE Published
via Android·12:00 AM
Data Sourced
via Android·12:00 AM
SeverityAffected Software
Jun 22, 2020
CVE Published
via MITRE·07:10 AM
Data Sourced
via MITRE·07:10 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-3628?
CVE-2020-3628 is rated as a high severity vulnerability that could allow unauthorized access.
2
What devices are affected by CVE-2020-3628?
CVE-2020-3628 affects Snapdragon Consumer IoT, Snapdragon Mobile in APQ8053, Rennell, and SDX20.
3
How do I fix CVE-2020-3628?
To fix CVE-2020-3628, apply the latest firmware updates provided by Qualcomm.
4
What risk does CVE-2020-3628 pose to users?
CVE-2020-3628 poses a risk of unauthorized access due to improper socket access by the logging application.
5
Is there a workaround for CVE-2020-3628?
Currently, the recommended action for CVE-2020-3628 is to update your device firmware, as there are no established workarounds.