PT-2021-9202 · Qualcomm · Qualcomm Snapdragon

Published

2021-01-21

·

Updated

2021-07-21

·

CVE-2020-11167

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon (affected versions not specified)
Description The issue is related to memory corruption that occurs while calculating L2CAP packet length in reassembly logic. This happens when a remote sender provides more data than expected. The problem affects various Qualcomm Snapdragon products, including Auto, Compute, Connectivity, Consumer IOT, Industrial IOT, Mobile, Voice & Music, and Wearables.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Integer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-11167

Affected Products

Qualcomm Snapdragon