CVE-2020-3663: Critical severity Google Android vulnerability
Buffer over-write may occur during fetching track decoder specific information if cb size exceeds buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, Kamorta, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, QCA6574AU, QCS405, QCS605, QM215, Rennell, Saipan, SDA660, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-3663?
CVE-2020-3663 has been classified as a high severity vulnerability due to the potential for a buffer over-write.
How do I fix CVE-2020-3663?
To mitigate CVE-2020-3663, it is recommended to update your device firmware to the latest version provided by Qualcomm.
Which products are affected by CVE-2020-3663?
CVE-2020-3663 affects various Snapdragon products including but not limited to Snapdragon Auto, Snapdragon Connectivity, and Snapdragon Mobile.
What kind of attacks can exploit CVE-2020-3663?
CVE-2020-3663 can be exploited to execute arbitrary code through a buffer overflow, potentially compromising the device's functionality.
Is CVE-2020-3663 specific to Android?
While CVE-2020-3663 is commonly associated with Android devices, it impacts multiple Snapdragon platform firmware regardless of the operating system.