CVE-2020-3702: Medium severity qualcomm apq8053 vulnerability
Last updated 25 April 2025
Other sources
u'Specifically timed and handcrafted traffic can cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure over the air for a discrete set of traffic' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8053, IPQ4019, IPQ8064, MSM8909W, MSM8996AU, QCA9531, QCN5502, QCS405, SDX20, SM6150, SM7150
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-3702?
CVE-2020-3702 has been classified with a significant severity level due to its potential to lead to information disclosure.
How do I fix CVE-2020-3702?
To resolve CVE-2020-3702, update to a patched version of the affected firmware or software, as listed in the security advisories.
Which devices are affected by CVE-2020-3702?
CVE-2020-3702 affects various Qualcomm chipsets including APQ8053, IPQ4019, IPQ8064, and several others, as well as Arista Wireless Access Points.
What type of vulnerability is CVE-2020-3702?
CVE-2020-3702 is a network vulnerability that can cause internal errors in WLAN devices stemming from crafted network traffic.
Can CVE-2020-3702 enable unauthorized access to data?
Yes, CVE-2020-3702 can potentially lead to unauthorized information disclosure over the air due to improper layer 2 encryption.