First published: Mon Nov 02 2020(Updated: )
u'Use out of range pointer issue can occur due to incorrect buffer range check during the execution of qseecom.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8098, Bitra, MSM8909W, MSM8996AU, Nicobar, QCM2150, QCS605, Saipan, SDM429W, SDX20, SM6150, SM8150, SM8250, SXR2130
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm APQ8009W Firmware | ||
Qualcomm APQ8009W | ||
Qualcomm APQ8017 | ||
Qualcomm APQ8017 | ||
qualcomm apq8053-ac firmware | ||
Qualcomm APQ8053 Firmware | ||
qualcomm APQ8098 | ||
Qualcomm 8098 | ||
Qualcomm Bitra | ||
Qualcomm Bitra Firmware | ||
Qualcomm MSM8909W | ||
Qualcomm Snapdragon 8909 | ||
qualcomm MSM8996AU firmware | ||
Qualcomm MSM8996AU Firmware | ||
Qualcomm Nicobar | ||
Qualcomm Nicobar | ||
Qualcomm QCM2150 | ||
Qualcomm QCM2150 Firmware | ||
Qualcomm ZZ QCS605 firmware | ||
Qualcomm QCS605 Firmware | ||
Qualcomm Saipan Firmware | ||
Qualcomm Saipan Firmware | ||
Qualcomm SDM429W | ||
qualcomm SDM429W firmware | ||
Qualcomm SDX20 Firmware | ||
Qualcomm SDX20 Firmware | ||
qualcomm SM6150P firmware | ||
Qualcomm SM6150P | ||
Qualcomm SM8150P Firmware | ||
Qualcomm SM8150 Fusion | ||
Qualcomm SM8250 | ||
Qualcomm qsm8250 | ||
qualcomm SXR2130P firmware | ||
Qualcomm SXR2130 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-3693 is high with a score of 7.8.
Devices in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables with specific firmware versions are affected.
CVE-2020-3693 can be exploited by triggering a use out of range pointer issue during the execution of qseecom.
Qualcomm Apq8009, Qualcomm Apq8017, and Qualcomm Apq8053 are affected by CVE-2020-3693.
You can find more information about CVE-2020-3693 on the Qualcomm Product Security Bulletins for October 2020.