CVE-2020-11169

CRITICAL

Qualcomm Apq8009 Firmware - Integer Overflow

Title source: rule
STIX 2.1

Description

u'Buffer over-read while processing received L2CAP packet due to lack of integer overflow check' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8053, QCA6390, QCN7605, QCN7606, SA415M, SA515M, SA6155P, SA8155P, SC8180X, SDX55

Scores

CVSS v3 9.1
EPSS 0.0029
EPSS Percentile 52.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

Details

CWE
CWE-190 CWE-125
Status published
Products (11)
qualcomm/apq8009_firmware
qualcomm/apq8053_firmware
qualcomm/qca6390_firmware
qualcomm/qcn7605_firmware
qualcomm/qcn7606_firmware
qualcomm/sa415m_firmware
qualcomm/sa515m_firmware
qualcomm/sa6155p_firmware
qualcomm/sa8155p_firmware
qualcomm/sc8180x_firmware
... and 1 more
Published Nov 02, 2020
Tracked Since Feb 18, 2026