CVE-2020-3674: Medium severity qualcomm nicobar vulnerability
Information can leak into userspace due to improper transfer of data from kernel to userspace in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in Nicobar, QCS405, Saipan, SC8180X, SDX55, SM8150, SM8250, SXR2130
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2020-3674?
CVE-2020-3674 is a vulnerability in Qualcomm Snapdragon devices that allows information to leak into userspace due to improper transfer of data from kernel to userspace.
Which software is affected by CVE-2020-3674?
Qualcomm Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in Nicobar, QCS405, Saipan, SC8180X, SDX55, SM8150, SM8250, and Sxr2130 are affected by CVE-2020-3674.
What is the severity of CVE-2020-3674?
The severity of CVE-2020-3674 is medium with a CVSS score of 5.5.
How can the vulnerability CVE-2020-3674 be exploited?
The vulnerability CVE-2020-3674 can be exploited by an attacker to obtain sensitive information from the kernel and transfer it to userspace.
Where can I find more information about CVE-2020-3674?
You can find more information about CVE-2020-3674 on the Qualcomm Product Security Bulletins website: https://www.qualcomm.com/company/product-security/bulletins/september-2020-bulletin.