Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-11220

EPSS 0.04% · P11
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2020-11220

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
While processing storage SCM commands there is a time of check or time of use window where a pointer used could be invalid at a specific time while executing the storage SCM call in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Qualcomm 封闭源组件安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Qualcomm封闭源组件存在安全漏洞,该漏洞源于当处理存储SCM命令时,有一个检查时间或使用时间窗口,其中使用的指针在执行存储SCM调用时可能在特定时间无效。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
Qualcomm, Inc.Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking AQT1000, AR8035, PM4125, PM4250, PM6125, PM6150, PM6150A, PM6150L, PM6350, PM640A, PM640L, PM640P, PM7250B, PM8004, PM8005, PM8008, PM8350, PM855, PM855A, PM855B, PM855L, PM855P, PM8998, PMD9655, PMI632, PMI8998, PMK8002, PMK8003, PMM8195AU, PMM855AU, PMX -

II. Public POCs for CVE-2020-11220

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-11220

登录查看更多情报信息。

Same Patch Batch · Qualcomm, Inc. · 2021-03-17 · 21 CVEs total

CVE-2020-11222Qualcomm 封闭源组件安全漏洞
CVE-2020-11309GPU driver 资源管理错误漏洞
CVE-2020-11308Qualcomm 组件 输入验证错误漏洞
CVE-2020-11305Snapdragon Industrial IOT 安全漏洞
CVE-2020-11299Qualcomm 封闭源组件缓冲区错误漏洞
CVE-2020-11290Qualcomm 组件资源管理错误漏洞
CVE-2020-11230Qualcom qseecom driver 安全漏洞
CVE-2020-11228Qualcomm 组件 访问控制错误漏洞
CVE-2020-11227Qualcomm 组件 输入验证错误漏洞
CVE-2020-11226Qualcomm 组件 输入验证错误漏洞
CVE-2020-11166Qualcomm 封闭源组件 安全漏洞
CVE-2020-11221Qualcomm 封闭源组件安全漏洞
CVE-2020-11218Qualcomm 封闭源组件 安全漏洞
CVE-2020-11199Qualcomm HLOS 信息泄露漏洞
CVE-2020-11192Qualcomm 安全漏洞
CVE-2020-11190Qualcomm 封闭源组件 安全漏洞
CVE-2020-11189Google Android 缓冲区错误漏洞
CVE-2020-11188Qualcomm 封闭源组件安全漏洞
CVE-2020-11186Qualcomm 封闭源组件安全漏洞
CVE-2020-11171Qualcomm 封闭源组件安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2020-11220

No comments yet


Leave a comment