PT-2020-12559 · Qualcomm · Snapdragon Wearables+7
Published
2020-09-08
·
Updated
2021-07-21
·
CVE-2020-11118
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Snapdragon Auto versions APQ8009 through SM8250
Snapdragon Compute versions APQ8009 through SM8250
Snapdragon Consumer Electronics Connectivity versions APQ8009 through SM8250
Snapdragon Consumer IOT versions APQ8009 through SM8250
Snapdragon Industrial IOT versions APQ8009 through SM8250
Snapdragon Mobile versions APQ8009 through SM8250
Snapdragon Voice & Music versions APQ8009 through SM8250
Snapdragon Wearables versions APQ8009 through SM8250
Description
The issue is related to information exposure while processing IE header due to improper check of beacon IE frame. This affects various Snapdragon products.
Recommendations
For Snapdragon Auto versions APQ8009 through SM8250, update to a version that includes the fix for the information exposure issue.
For Snapdragon Compute versions APQ8009 through SM8250, update to a version that includes the fix for the information exposure issue.
For Snapdragon Consumer Electronics Connectivity versions APQ8009 through SM8250, update to a version that includes the fix for the information exposure issue.
For Snapdragon Consumer IOT versions APQ8009 through SM8250, update to a version that includes the fix for the information exposure issue.
For Snapdragon Industrial IOT versions APQ8009 through SM8250, update to a version that includes the fix for the information exposure issue.
For Snapdragon Mobile versions APQ8009 through SM8250, update to a version that includes the fix for the information exposure issue.
For Snapdragon Voice & Music versions APQ8009 through SM8250, update to a version that includes the fix for the information exposure issue.
For Snapdragon Wearables versions APQ8009 through SM8250, update to a version that includes the fix for the information exposure issue.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Snapdragon Auto
Snapdragon Compute
Snapdragon Consumer Electronics Connectivity
Snapdragon Consumer Iot
Snapdragon Industrial Iot
Snapdragon Mobile
Snapdragon Voice & Music
Snapdragon Wearables