7.8

CVE-2020-11175

u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been deleted due to improper timer handling.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8009W, MSM8909W, QCS605, QM215, SA6155, SA6155P, SA8155, SA8155P, SDA640, SDA670, SDA855, SDM1000, SDM640, SDM670, SDM710, SDM845, SDX50M, SDX55, SDX55M, SM6125, SM6350, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SXR1120, SXR1130, SXR2130, SXR2130P

Data is provided by the National Vulnerability Database (NVD)
QualcommApq8009w Firmware Version-
   QualcommApq8009w Version-
QualcommMsm8909w Firmware Version-
   QualcommMsm8909w Version-
QualcommQcs605 Firmware Version-
   QualcommQcs605 Version-
QualcommQm215 Firmware Version-
   QualcommQm215 Version-
QualcommSa6155 Firmware Version-
   QualcommSa6155 Version-
QualcommSa6155p Firmware Version-
   QualcommSa6155p Version-
QualcommSa8155 Firmware Version-
   QualcommSa8155 Version-
QualcommSa8155p Firmware Version-
   QualcommSa8155p Version-
QualcommSda640 Firmware Version-
   QualcommSda640 Version-
QualcommSda670 Firmware Version-
   QualcommSda670 Version-
QualcommSda855 Firmware Version-
   QualcommSda855 Version-
QualcommSdm1000 Firmware Version-
   QualcommSdm1000 Version-
QualcommSdm640 Firmware Version-
   QualcommSdm640 Version-
QualcommSdm670 Firmware Version-
   QualcommSdm670 Version-
QualcommSdm710 Firmware Version-
   QualcommSdm710 Version-
QualcommSdm845 Firmware Version-
   QualcommSdm845 Version-
QualcommSdx50m Firmware Version-
   QualcommSdx50m Version-
QualcommSdx55 Firmware Version-
   QualcommSdx55 Version-
QualcommSdx55m Firmware Version-
   QualcommSdx55m Version-
QualcommSm6125 Firmware Version-
   QualcommSm6125 Version-
QualcommSm6350 Firmware Version-
   QualcommSm6350 Version-
QualcommSm7225 Firmware Version-
   QualcommSm7225 Version-
QualcommSm7250 Firmware Version-
   QualcommSm7250 Version-
QualcommSm7250p Firmware Version-
   QualcommSm7250p Version-
QualcommSm8150 Firmware Version-
   QualcommSm8150 Version-
QualcommSm8150p Firmware Version-
   QualcommSm8150p Version-
QualcommSm8250 Firmware Version-
   QualcommSm8250 Version-
QualcommSxr1120 Firmware Version-
   QualcommSxr1120 Version-
QualcommSxr1130 Firmware Version-
   QualcommSxr1130 Version-
QualcommSxr2130 Firmware Version-
   QualcommSxr2130 Version-
QualcommSxr2130p Firmware Version-
   QualcommSxr2130p Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.04% 0.077
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
CWE-416 Use After Free

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.