Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-11148

EPSS 0.04% · P12
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2020-11148

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Use after free issue in HIDL while using callback to post event in Rx thread when internal mutex is not acquired and meantime close is triggered and callback instance is deleted in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
多款Qualcomm产品资源管理错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Qualcomm 芯片是美国高通(Qualcomm)公司的芯片。一种将电路(主要包括半导体设备,也包括被动组件等)小型化的方式,并时常制造在半导体晶圆表面上。 多款Qualcomm产品存在资源管理错误漏洞,该漏洞源于当未获取内部互斥且同时触发关闭并删除回调实例时,使用回调在RID线程中发布事件时在HIDL中释放问题后使用。以下产品和版本受到影响:Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
Qualcomm, Inc.Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables APQ8017, APQ8053, MSM8917, MSM8953, PM215, PM3003A, PM439, PM6125, PM6150, PM6150A, PM6150L, PM6350, PM640A, PM640L, PM640P, PM660, PM660L, PM670, PM670L, PM7150A, PM7150L, PM7250, PM7250B, PM7350C, PM8008, PM8009, PM8150A, PM8150B, PM8150C, PM8150L, PM82 -

II. Public POCs for CVE-2020-11148

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-11148

登录查看更多情报信息。

Same Patch Batch · Qualcomm, Inc. · 2021-01-21 · 34 CVEs total

CVE-2020-11215多款Qualcomm产品缓冲区错误漏洞
CVE-2020-11181多款Qualcomm产品缓冲区错误漏洞
CVE-2020-11183多款Qualcomm产品安全漏洞
CVE-2020-11185多款Qualcomm产品缓冲区错误漏洞
CVE-2020-11197多款Qualcomm产品输入验证错误漏洞
CVE-2020-11200多款Qualcomm产品缓冲区错误漏洞
CVE-2020-11212多款Qualcomm产品 缓冲区错误漏洞
CVE-2020-11213多款Qualcomm产品缓冲区错误漏洞
CVE-2020-11214多款Qualcomm产品缓冲区错误漏洞
CVE-2020-11180多款 Qualcomm 产品输入验证错误漏洞
CVE-2020-11216多款Qualcomm产品输入验证错误漏洞
CVE-2020-11217多款Qualcomm产品资源管理错误漏洞
CVE-2020-11225多款Qualcomm产品安全漏洞
CVE-2020-3685多款Qualcomm产品资源管理错误漏洞
CVE-2020-3686多款Qualcomm产品安全漏洞
CVE-2020-3687Qualcomm Bluetooth Host 信息泄露漏洞
CVE-2020-3691多款Qualcomm产品数字错误漏洞
CVE-2020-11119多款Qualcomm产品缓冲区错误漏洞
CVE-2020-11179Qualcomm Adreno GPU缓冲区错误漏洞
CVE-2020-11167多款Qualcomm产品输入验证错误漏洞

Showing top 20 of 34 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2020-11148

No comments yet


Leave a comment