CVE-2020-11185
HIGHQualcomm AR9380 and Snapdragon - Out-of-bounds Write in WLAN Driver
Title source: llmDescription
Out of bound issue in WLAN driver while processing vdev responses from firmware due to lack of validation of data received from firmware in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
References (2)
Core 2
Core References
Broken Link x_refsource_confirm
https://www.qualcomm.com/company/product-security/bulletins/december-2020-bulletin
Patch, Vendor Advisory
https://www.qualcomm.com/company/product-security/bulletins/december-2020-security-bulletin
Scores
CVSS v3
7.8
EPSS
0.0003
EPSS Percentile
9.9%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-787
Status
published
Products (50)
qualcomm/ar9380
qualcomm/csr8811
qualcomm/ipq4018
qualcomm/ipq4019
qualcomm/ipq4028
qualcomm/ipq4029
qualcomm/ipq6000
qualcomm/ipq6005
qualcomm/ipq6010
qualcomm/ipq6018
... and 40 more
Published
Jan 21, 2021
Tracked Since
Feb 18, 2026