PT-2020-17696 · Qualcomm · Snapdragon Auto+41
Published
2020-11-02
·
Updated
2021-07-21
·
CVE-2020-3703
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
🚨 CVE-2020-3703
u'Buffer over-read issue in Bluetooth peripheral firmware due to lack of check for invalid opcode and length of opcode received from central device(This CVE is equivalent to Link Layer Length Overfow issue (CVE-2019-16336,CVE-2019-17519) and Silent Length Overflow issue(CVE-2019-17518) mentioned in sweyntooth paper)' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8053, APQ8076, AR9344, Bitra, Kamorta, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8917, MSM8937, MSM8940, MSM8953, Nicobar, QCA6174A, QCA9377, QCM2150, QCM6125, QCS404, QCS405, QCS605, QCS610, QM215, Rennell, SC8180X, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130
🎖@cveNotify
Fix
RCE
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Snapdragon Auto
Apq8053 Firmware
Ipq8076 Firmware
Ar9344 Firmware
Bitra Firmware
Kamorta Firmware
Mdm9206 Firmware
Mdm9207 Firmware
Mdm9607 Firmware
Msm8905 Firmware
Msm8917 Firmware
Msm8937 Firmware
Msm8940 Firmware
Msm8953 Firmware
Nicobar Firmware
Qca6174A Firmware
Qca9377 Firmware
Qcm2150 Firmware
Qcm6125 Firmware
Qcs404 Firmware
Qcs405 Firmware
Qcs605 Firmware
Qcs610 Firmware
Qm215 Firmware
Rennell Firmware
Sc8180X Firmware
Sdm429W Firmware
Sdm439 Firmware
Sd450 Firmware
Sdm630 Firmware
Sd632 Firmware
Sd 636 Firmware
Sd660 Firmware
Sd670 Firmware
Sd710 Firmware
Sd845 Firmware
Sdx20M Firmware
Sdx24 Firmware
Sm6150 Firmware
Sm7150 Firmware
Sm8150 Firmware
Sxr1130 Firmware