CVE-2020-11186

MEDIUM

Qualcomm Csrb31024 Firmware - Infinite Loop

Title source: rule
STIX 2.1

Description

Modem will enter into busy mode in an infinite loop while parsing histogram dimension due to improper validation of input received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile

References (1)

Core 1
Core References

Scores

CVSS v3 5.5
EPSS 0.0004
EPSS Percentile 13.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-835
Status published
Products (50)
qualcomm/csrb31024_firmware
qualcomm/pm3003a_firmware
qualcomm/pm7150a_firmware
qualcomm/pm7150l_firmware
qualcomm/pm7250_firmware
qualcomm/pm7250b_firmware
qualcomm/pm8008_firmware
qualcomm/pm8009_firmware
qualcomm/pm8150a_firmware
qualcomm/pm8150b_firmware
... and 40 more
Published Mar 17, 2021
Tracked Since Feb 18, 2026