7.8

CVE-2020-11125

u'Out of bound access can happen in MHI command process due to lack of check of channel id value received from MHI devices' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in Agatti, APQ8009, Bitra, IPQ4019, IPQ5018, IPQ6018, IPQ8064, IPQ8074, Kamorta, MDM9150, MDM9607, MDM9650, MSM8905, MSM8917, MSM8953, Nicobar, QCA6390, QCA9531, QCM2150, QCS404, QCS405, QCS605, QCS610, QM215, QRB5165, Rennell, SA415M, SA515M, SA6155P, SA8155P, Saipan, SC8180X, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM660, SDM670, SDM710, SDM845, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
QualcommAgatti Firmware Version-
   QualcommAgatti Version-
QualcommApq8009 Firmware Version-
   QualcommApq8009 Version-
QualcommBitra Firmware Version-
   QualcommBitra Version-
QualcommIpq4019 Firmware Version-
   QualcommIpq4019 Version-
QualcommIpq5018 Firmware Version-
   QualcommIpq5018 Version-
QualcommIpq6018 Firmware Version-
   QualcommIpq6018 Version-
QualcommIpq8064 Firmware Version-
   QualcommIpq8064 Version-
QualcommIpq8074 Firmware Version-
   QualcommIpq8074 Version-
QualcommKamorta Firmware Version-
   QualcommKamorta Version-
QualcommMdm9150 Firmware Version-
   QualcommMdm9150 Version-
QualcommMdm9607 Firmware Version-
   QualcommMdm9607 Version-
QualcommMdm9650 Firmware Version-
   QualcommMdm9650 Version-
QualcommMsm8905 Firmware Version-
   QualcommMsm8905 Version-
QualcommMsm8917 Firmware Version-
   QualcommMsm8917 Version-
QualcommMsm8953 Firmware Version-
   QualcommMsm8953 Version-
QualcommNicobar Firmware Version-
   QualcommNicobar Version-
QualcommQca6390 Firmware Version-
   QualcommQca6390 Version-
QualcommQca9531 Firmware Version-
   QualcommQca9531 Version-
QualcommQcm2150 Firmware Version-
   QualcommQcm2150 Version-
QualcommQcs404 Firmware Version-
   QualcommQcs404 Version-
QualcommQcs405 Firmware Version-
   QualcommQcs405 Version-
QualcommQcs605 Firmware Version-
   QualcommQcs605 Version-
QualcommQcs610 Firmware Version-
   QualcommQcs610 Version-
QualcommQm215 Firmware Version-
   QualcommQm215 Version-
QualcommQrb5165 Firmware Version-
   QualcommQrb5165 Version-
QualcommRennell Firmware Version-
   QualcommRennell Version-
QualcommSa415m Firmware Version-
   QualcommSa415m Version-
QualcommSa515m Firmware Version-
   QualcommSa515m Version-
QualcommSa6155p Firmware Version-
   QualcommSa6155p Version-
QualcommSa8155p Firmware Version-
   QualcommSa8155p Version-
QualcommSaipan Firmware Version-
   QualcommSaipan Version-
QualcommSc8180x Firmware Version-
   QualcommSc8180x Version-
QualcommSdm429 Firmware Version-
   QualcommSdm429 Version-
QualcommSdm429w Firmware Version-
   QualcommSdm429w Version-
QualcommSdm439 Firmware Version-
   QualcommSdm439 Version-
QualcommSdm450 Firmware Version-
   QualcommSdm450 Version-
QualcommSdm632 Firmware Version-
   QualcommSdm632 Version-
QualcommSdm660 Firmware Version-
   QualcommSdm660 Version-
QualcommSdm670 Firmware Version-
   QualcommSdm670 Version-
QualcommSdm710 Firmware Version-
   QualcommSdm710 Version-
QualcommSdm845 Firmware Version-
   QualcommSdm845 Version-
QualcommSdx55 Firmware Version-
   QualcommSdx55 Version-
QualcommSm6150 Firmware Version-
   QualcommSm6150 Version-
QualcommSm7150 Firmware Version-
   QualcommSm7150 Version-
QualcommSm8150 Firmware Version-
   QualcommSm8150 Version-
QualcommSm8250 Firmware Version-
   QualcommSm8250 Version-
QualcommSxr1130 Firmware Version-
   QualcommSxr1130 Version-
QualcommSxr2130 Firmware Version-
   QualcommSxr2130 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.04% 0.097
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.