7.8

CVE-2020-11207

Exploit

Buffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8052, APQ8056, APQ8076, APQ8096, APQ8096SG, APQ8098, MDM9655, MSM8952, MSM8956, MSM8976, MSM8976SG, MSM8996, MSM8996SG, MSM8998, QCM4290, QCM6125, QCS410, QCS4290, QCS610, QCS6125, QSM8250, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155, SA8155P, SA8195P, SC7180, SDA640, SDA660, SDA845, SDA855, SDM640, SDM660, SDM830, SDM845, SDM850, SDX50M, SDX55, SDX55M, SM4250, SM4250P, SM6115, SM6115P, SM6125, SM6150, SM6150P, SM6250, SM6250P, SM6350, SM7125, SM7150, SM7150P, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SXR2130, SXR2130P

Data is provided by the National Vulnerability Database (NVD)
QualcommApq8052 Firmware Version-
   QualcommApq8052 Version-
QualcommApq8056 Firmware Version-
   QualcommApq8056 Version-
QualcommApq8076 Firmware Version-
   QualcommApq8076 Version-
QualcommApq8096 Firmware Version-
   QualcommApq8096 Version-
QualcommApq8098 Firmware Version-
   QualcommApq8098 Version-
QualcommMdm9655 Firmware Version-
   QualcommMdm9655 Version-
QualcommMsm8952 Firmware Version-
   QualcommMsm8952 Version-
QualcommMsm8956 Firmware Version-
   QualcommMsm8956 Version-
QualcommMsm8976 Firmware Version-
   QualcommMsm8976 Version-
QualcommMsm8976sg Firmware Version-
   QualcommMsm8976sg Version-
QualcommMsm8996 Firmware Version-
   QualcommMsm8996 Version-
QualcommMsm8996sg Firmware Version-
   QualcommMsm8996sg Version-
QualcommMsm8998 Firmware Version-
   QualcommMsm8998 Version-
QualcommQcm4290 Firmware Version-
   QualcommQcm4290 Version-
QualcommQcm6125 Firmware Version-
   QualcommQcm6125 Version-
QualcommQcs410 Firmware Version-
   QualcommQcs410 Version-
QualcommQcs4290 Firmware Version-
   QualcommQcs4290 Version-
QualcommQcs610 Firmware Version-
   QualcommQcs610 Version-
QualcommQcs6125 Firmware Version-
   QualcommQcs6125 Version-
QualcommQsm8250 Firmware Version-
   QualcommQsm8250 Version-
QualcommSa6145p Firmware Version-
   QualcommSa6145p Version-
QualcommSa6150p Firmware Version-
   QualcommSa6150p Version-
QualcommSa6155 Firmware Version-
   QualcommSa6155 Version-
QualcommSa6155p Firmware Version-
   QualcommSa6155p Version-
QualcommSa8150p Firmware Version-
   QualcommSa8150p Version-
QualcommSa8155 Firmware Version-
   QualcommSa8155 Version-
QualcommSa8155p Firmware Version-
   QualcommSa8155p Version-
QualcommSa8195p Firmware Version-
   QualcommSa8195p Version-
QualcommSc7180 Firmware Version-
   QualcommSc7180 Version-
QualcommSda640 Firmware Version-
   QualcommSda640 Version-
QualcommSda660 Firmware Version-
   QualcommSda660 Version-
QualcommSda845 Firmware Version-
   QualcommSda845 Version-
QualcommSda855 Firmware Version-
   QualcommSda855 Version-
QualcommSdm640 Firmware Version-
   QualcommSdm640 Version-
QualcommSdm660 Firmware Version-
   QualcommSdm660 Version-
QualcommSdm830 Firmware Version-
   QualcommSdm830 Version-
QualcommSdm845 Firmware Version-
   QualcommSdm845 Version-
QualcommSdm850 Firmware Version-
   QualcommSdm850 Version-
QualcommSdx50m Firmware Version-
   QualcommSdx50m Version-
QualcommSdx55 Firmware Version-
   QualcommSdx55 Version-
QualcommSdx55m Firmware Version-
   QualcommSdx55m Version-
QualcommSm4250 Firmware Version-
   QualcommSm4250 Version-
QualcommSm4250p Firmware Version-
   QualcommSm4250p Version-
QualcommSm6115 Firmware Version-
   QualcommSm6115 Version-
QualcommSm6115p Firmware Version-
   QualcommSm6115p Version-
QualcommSm6125 Firmware Version-
   QualcommSm6125 Version-
QualcommSm6150 Firmware Version-
   QualcommSm6150 Version-
QualcommSm6150p Firmware Version-
   QualcommSm6150p Version-
QualcommSm6250 Firmware Version-
   QualcommSm6250 Version-
QualcommSm6250p Firmware Version-
   QualcommSm6250p Version-
QualcommSm6350 Firmware Version-
   QualcommSm6350 Version-
QualcommSm7125 Firmware Version-
   QualcommSm7125 Version-
QualcommSm7150 Firmware Version-
   QualcommSm7150 Version-
QualcommSm7150p Firmware Version-
   QualcommSm7150p Version-
QualcommSm7225 Firmware Version-
   QualcommSm7225 Version-
QualcommSm7250 Firmware Version-
   QualcommSm7250 Version-
QualcommSm7250p Firmware Version-
   QualcommSm7250p Version-
QualcommSm8150 Firmware Version-
   QualcommSm8150 Version-
QualcommSm8150p Firmware Version-
   QualcommSm8150p Version-
QualcommSm8250 Firmware Version-
   QualcommSm8250 Version-
QualcommSxr2130 Firmware Version-
   QualcommSxr2130 Version-
QualcommSxr2130p Firmware Version-
   QualcommSxr2130p Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.54% 0.662
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.