7.8

CVE-2020-11127

u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security metadata while processing objects to be loaded' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in MDM9205, QCM4290, QCS405, QCS410, QCS4290, QCS610, QSM8250, SA415M, SA515M, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155, SA8155P, SA8195P, SC7180, SC8180X, SC8180X+SDX55, SC8180XP, SDA640, SDA845, SDA855, SDM1000, SDM640, SDM830, SDM845, SDM850, SDX24, SDX50M, SDX55, SDX55M, SM4125, SM4250, SM4250P, SM6115, SM6115P, SM6150, SM6150P, SM6250, SM6250P, SM6350, SM7125, SM7150, SM7150P, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SXR2130, SXR2130P

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
QualcommMdm9205 Firmware Version-
   QualcommMdm9205 Version-
QualcommQcm4290 Firmware Version-
   QualcommQcm4290 Version-
QualcommQcs405 Firmware Version-
   QualcommQcs405 Version-
QualcommQcs410 Firmware Version-
   QualcommQcs410 Version-
QualcommQcs4290 Firmware Version-
   QualcommQcs4290 Version-
QualcommQcs610 Firmware Version-
   QualcommQcs610 Version-
QualcommQsm8250 Firmware Version-
   QualcommQsm8250 Version-
QualcommSa415m Firmware Version-
   QualcommSa415m Version-
QualcommSa515m Firmware Version-
   QualcommSa515m Version-
QualcommSa6145p Firmware Version-
   QualcommSa6145p Version-
QualcommSa6150p Firmware Version-
   QualcommSa6150p Version-
QualcommSa6155 Firmware Version-
   QualcommSa6155 Version-
QualcommSa6155p Firmware Version-
   QualcommSa6155p Version-
QualcommSa8150p Firmware Version-
   QualcommSa8150p Version-
QualcommSa8155 Firmware Version-
   QualcommSa8155 Version-
QualcommSa8155p Firmware Version-
   QualcommSa8155p Version-
QualcommSa8195p Firmware Version-
   QualcommSa8195p Version-
QualcommSc7180 Firmware Version-
   QualcommSc7180 Version-
QualcommSc8180x Firmware Version-
   QualcommSc8180x Version-
QualcommSdx55 Firmware Version-
   QualcommSdx55 Version-
QualcommSc8180xp Firmware Version-
   QualcommSc8180xp Version-
QualcommSda640 Firmware Version-
   QualcommSda640 Version-
QualcommSda845 Firmware Version-
   QualcommSda845 Version-
QualcommSda855 Firmware Version-
   QualcommSda855 Version-
QualcommSdm1000 Firmware Version-
   QualcommSdm1000 Version-
QualcommSdm640 Firmware Version-
   QualcommSdm640 Version-
QualcommSdm830 Firmware Version-
   QualcommSdm830 Version-
QualcommSdm845 Firmware Version-
   QualcommSdm845 Version-
QualcommSdm850 Firmware Version-
   QualcommSdm850 Version-
QualcommSdx24 Firmware Version-
   QualcommSdx24 Version-
QualcommSdx50m Firmware Version-
   QualcommSdx50m Version-
QualcommSdx55 Firmware Version-
   QualcommSdx55 Version-
QualcommSdx55m Firmware Version-
   QualcommSdx55m Version-
QualcommSm4125 Firmware Version-
   QualcommSm4125 Version-
QualcommSm4250 Firmware Version-
   QualcommSm4250 Version-
QualcommSm4250p Firmware Version-
   QualcommSm4250p Version-
QualcommSm6115 Firmware Version-
   QualcommSm6115 Version-
QualcommSm6115p Firmware Version-
   QualcommSm6115p Version-
QualcommSm6150 Firmware Version-
   QualcommSm6150 Version-
QualcommSm6150p Firmware Version-
   QualcommSm6150p Version-
QualcommSm6250 Firmware Version-
   QualcommSm6250 Version-
QualcommSm6250p Firmware Version-
   QualcommSm6250p Version-
QualcommSm6350 Firmware Version-
   QualcommSm6350 Version-
QualcommSm7125 Firmware Version-
   QualcommSm7125 Version-
QualcommSm7150 Firmware Version-
   QualcommSm7150 Version-
QualcommSm7150p Firmware Version-
   QualcommSm7150p Version-
QualcommSm7225 Firmware Version-
   QualcommSm7225 Version-
QualcommSm7250 Firmware Version-
   QualcommSm7250 Version-
QualcommSm7250p Firmware Version-
   QualcommSm7250p Version-
QualcommSm8150 Firmware Version-
   QualcommSm8150 Version-
QualcommSm8150p Firmware Version-
   QualcommSm8150p Version-
QualcommSm8250 Firmware Version-
   QualcommSm8250 Version-
QualcommSxr2130 Firmware Version-
   QualcommSxr2130 Version-
QualcommSxr2130p Firmware Version-
   QualcommSxr2130p Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.04% 0.066
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
CWE-190 Integer Overflow or Wraparound

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.