CVE-2020-11179

HIGH

Qualcomm Pmc7180 - Out-of-Bounds Write

Title source: rule
STIX 2.1

Description

Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race condition. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

Exploits (1)

nomisec WORKING POC 5 stars
by sparrow-labz · poc
https://github.com/sparrow-labz/CVE-2020-11179-Adreno-Qualcomm-GPU

Scores

CVSS v3 7.0
EPSS 0.0210
EPSS Percentile 84.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-125 CWE-787
Status published
Products (50)
qualcomm/apq8009
qualcomm/apq8009w
qualcomm/apq8017
qualcomm/apq8037
qualcomm/apq8053
qualcomm/apq8064au
qualcomm/apq8096au
qualcomm/aqt1000
qualcomm/ar8031
qualcomm/ar8035
... and 40 more
Published Jan 21, 2021
Tracked Since Feb 18, 2026