First published: Thu Apr 16 2020(Updated: )
Possible buffer over-read issue in windows x86 wlan driver function while processing beacon or request frame due to lack of check of length of variable received. in Snapdragon Compute, Snapdragon Connectivity in MSM8998, QCA6390, SC7180, SC8180X, SDM850
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm MSM8998 | ||
Qualcomm 8998 | ||
Qualcomm QCA6390 Firmware | ||
Qualcomm QCA6390 Firmware | ||
Qualcomm SC7180P Firmware | ||
Qualcomm SC7180 | ||
qualcomm SC8180X firmware | ||
Qualcomm SC8180X | ||
Qualcomm Snapdragon 850 Firmware | ||
Qualcomm SD850 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-3652 has a medium severity rating due to the potential for buffer over-read that could lead to information disclosure.
To fix CVE-2020-3652, update to the latest firmware from Qualcomm that addresses the buffer over-read issue.
Devices utilizing Qualcomm MSM8998, QCA6390, SC7180, SC8180X, and SDM850 chipsets are affected by CVE-2020-3652.
CVE-2020-3652 is identified as a buffer over-read vulnerability within the Qualcomm wlan driver.
Yes, CVE-2020-3652 can potentially be exploited remotely when processing malicious frames.