Action not permitted
Modal body text goes here.
Modal Title
Modal Body
CVE-2020-11286 (GCVE-0-2020-11286)
Vulnerability from cvelistv5 – Published: 2021-02-22 06:26 – Updated: 2024-08-04 11:28
VLAI?
EPSS
Summary
An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface & endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Severity ?
No CVSS data available.
CWE
- Untrusted Pointer Dereference in Wired Connectivity
Assigner
References
| URL | Tags | ||||
|---|---|---|---|---|---|
|
|||||
Impacted products
| Vendor | Product | Version | ||
|---|---|---|---|---|
| Qualcomm, Inc. | Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables |
Affected:
APQ8009, APQ8009W, APQ8017, APQ8053, APQ8064AU, APQ8076, APQ8096AU, AR8151, CSR6030, MDM9206, MDM9230, MDM9250, MDM9330, MDM9607, MDM9626, MDM9628, MDM9630, MDM9640, MDM9650, MDM9655, MSM8909W, MSM8937, MSM8996AU, PM660, PM660A, PM660L, PM8004, PM8005, PM8909, PM8916, PM8937, PM8952, PM8953, PM8956, PM8996, PM8998, PMD9607, PMD9635, PMD9645, PMD9655, PMI8937, PMI8952, PMI8994, PMI8996, PMI8998, PMK8001, PMM8996AU, PMX20, QAT3514, QAT3522, QAT3550, QBT1000, QBT1500, QCA6174, QCA6174A, QCA6310, QCA6320, QCA6564A, QCA6564AU, QCA6574, QCA6574A, QCA6574AU, QCA6584, QCA6584AU, QCA9367, QCA9377, QET4100, QET4101, QET4200AQ, QFE1035, QFE1040, QFE1045, QFE2340, QFE2550, QFE3100, QFE3320, QFE3335, QFE3345, QLN1021AQ, QLN1030, QLN1031, QLN1036AQ, QPA4340, QPA4360, QPA5460, QSW8573, QTC800H, QTC800S, QTC800T, RGR7640AU, RSW8577, SD 636, SD205, SD210, SD660, SD820, SD821, SD835, SDM630, SDR660, SDW2500, SDW3100, SDX20, SDX20M, SMB1350, SMB1351, SMB1357, SMB1358, SMB1360, SMB1380, SMB231, SMB358S, WCD9306, ...[truncated*]
|
{
"containers": {
"adp": [
{
"providerMetadata": {
"dateUpdated": "2024-08-04T11:28:13.808Z",
"orgId": "af854a3a-2127-422b-91ae-364da2661108",
"shortName": "CVE"
},
"references": [
{
"tags": [
"x_refsource_CONFIRM",
"x_transferred"
],
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin"
}
],
"title": "CVE Program Container"
}
],
"cna": {
"affected": [
{
"product": "Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables",
"vendor": "Qualcomm, Inc.",
"versions": [
{
"status": "affected",
"version": "APQ8009, APQ8009W, APQ8017, APQ8053, APQ8064AU, APQ8076, APQ8096AU, AR8151, CSR6030, MDM9206, MDM9230, MDM9250, MDM9330, MDM9607, MDM9626, MDM9628, MDM9630, MDM9640, MDM9650, MDM9655, MSM8909W, MSM8937, MSM8996AU, PM660, PM660A, PM660L, PM8004, PM8005, PM8909, PM8916, PM8937, PM8952, PM8953, PM8956, PM8996, PM8998, PMD9607, PMD9635, PMD9645, PMD9655, PMI8937, PMI8952, PMI8994, PMI8996, PMI8998, PMK8001, PMM8996AU, PMX20, QAT3514, QAT3522, QAT3550, QBT1000, QBT1500, QCA6174, QCA6174A, QCA6310, QCA6320, QCA6564A, QCA6564AU, QCA6574, QCA6574A, QCA6574AU, QCA6584, QCA6584AU, QCA9367, QCA9377, QET4100, QET4101, QET4200AQ, QFE1035, QFE1040, QFE1045, QFE2340, QFE2550, QFE3100, QFE3320, QFE3335, QFE3345, QLN1021AQ, QLN1030, QLN1031, QLN1036AQ, QPA4340, QPA4360, QPA5460, QSW8573, QTC800H, QTC800S, QTC800T, RGR7640AU, RSW8577, SD 636, SD205, SD210, SD660, SD820, SD821, SD835, SDM630, SDR660, SDW2500, SDW3100, SDX20, SDX20M, SMB1350, SMB1351, SMB1357, SMB1358, SMB1360, SMB1380, SMB231, SMB358S, WCD9306, ...[truncated*]"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface \u0026 endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables"
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "Untrusted Pointer Dereference in Wired Connectivity",
"lang": "en",
"type": "text"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2021-02-22T06:26:05.000Z",
"orgId": "2cfc7d3e-20d3-47ac-8db7-1b7285aff15f",
"shortName": "qualcomm"
},
"references": [
{
"tags": [
"x_refsource_CONFIRM"
],
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin"
}
],
"x_ConverterErrors": {
"version_name": {
"error": "version_name too long. Use array of versions to record more than one version.",
"message": "Truncated!"
}
},
"x_legacyV4Record": {
"CVE_data_meta": {
"ASSIGNER": "product-security@qualcomm.com",
"ID": "CVE-2020-11286",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables",
"version": {
"version_data": [
{
"version_value": "APQ8009, APQ8009W, APQ8017, APQ8053, APQ8064AU, APQ8076, APQ8096AU, AR8151, CSR6030, MDM9206, MDM9230, MDM9250, MDM9330, MDM9607, MDM9626, MDM9628, MDM9630, MDM9640, MDM9650, MDM9655, MSM8909W, MSM8937, MSM8996AU, PM660, PM660A, PM660L, PM8004, PM8005, PM8909, PM8916, PM8937, PM8952, PM8953, PM8956, PM8996, PM8998, PMD9607, PMD9635, PMD9645, PMD9655, PMI8937, PMI8952, PMI8994, PMI8996, PMI8998, PMK8001, PMM8996AU, PMX20, QAT3514, QAT3522, QAT3550, QBT1000, QBT1500, QCA6174, QCA6174A, QCA6310, QCA6320, QCA6564A, QCA6564AU, QCA6574, QCA6574A, QCA6574AU, QCA6584, QCA6584AU, QCA9367, QCA9377, QET4100, QET4101, QET4200AQ, QFE1035, QFE1040, QFE1045, QFE2340, QFE2550, QFE3100, QFE3320, QFE3335, QFE3345, QLN1021AQ, QLN1030, QLN1031, QLN1036AQ, QPA4340, QPA4360, QPA5460, QSW8573, QTC800H, QTC800S, QTC800T, RGR7640AU, RSW8577, SD 636, SD205, SD210, SD660, SD820, SD821, SD835, SDM630, SDR660, SDW2500, SDW3100, SDX20, SDX20M, SMB1350, SMB1351, SMB1357, SMB1358, SMB1360, SMB1380, SMB231, SMB358S, WCD9306, WCD9326, WCD9330, WCD9335, WCD9340, WCD9341, WCN3610, WCN3615, WCN3620, WCN3660B, WCN3680B, WCN3980, WCN3990, WGR7640, WSA8810, WSA8815, WTR2955, WTR2965, WTR3905, WTR3925, WTR3950, WTR4905, WTR5975"
}
]
}
}
]
},
"vendor_name": "Qualcomm, Inc."
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface \u0026 endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables"
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Untrusted Pointer Dereference in Wired Connectivity"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin",
"refsource": "CONFIRM",
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin"
}
]
}
}
}
},
"cveMetadata": {
"assignerOrgId": "2cfc7d3e-20d3-47ac-8db7-1b7285aff15f",
"assignerShortName": "qualcomm",
"cveId": "CVE-2020-11286",
"datePublished": "2021-02-22T06:26:05.000Z",
"dateReserved": "2020-03-31T00:00:00.000Z",
"dateUpdated": "2024-08-04T11:28:13.808Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.1"
}
GSD-2020-11286
Vulnerability from gsd - Updated: 2023-12-13 01:22Details
An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface & endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Aliases
Aliases
{
"GSD": {
"alias": "CVE-2020-11286",
"description": "An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface \u0026 endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables",
"id": "GSD-2020-11286"
},
"gsd": {
"metadata": {
"exploitCode": "unknown",
"remediation": "unknown",
"reportConfidence": "confirmed",
"type": "vulnerability"
},
"osvSchema": {
"aliases": [
"CVE-2020-11286"
],
"details": "An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface \u0026 endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables",
"id": "GSD-2020-11286",
"modified": "2023-12-13T01:22:07.931147Z",
"schema_version": "1.4.0"
}
},
"namespaces": {
"cve.org": {
"CVE_data_meta": {
"ASSIGNER": "product-security@qualcomm.com",
"ID": "CVE-2020-11286",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables",
"version": {
"version_data": [
{
"version_value": "APQ8009, APQ8009W, APQ8017, APQ8053, APQ8064AU, APQ8076, APQ8096AU, AR8151, CSR6030, MDM9206, MDM9230, MDM9250, MDM9330, MDM9607, MDM9626, MDM9628, MDM9630, MDM9640, MDM9650, MDM9655, MSM8909W, MSM8937, MSM8996AU, PM660, PM660A, PM660L, PM8004, PM8005, PM8909, PM8916, PM8937, PM8952, PM8953, PM8956, PM8996, PM8998, PMD9607, PMD9635, PMD9645, PMD9655, PMI8937, PMI8952, PMI8994, PMI8996, PMI8998, PMK8001, PMM8996AU, PMX20, QAT3514, QAT3522, QAT3550, QBT1000, QBT1500, QCA6174, QCA6174A, QCA6310, QCA6320, QCA6564A, QCA6564AU, QCA6574, QCA6574A, QCA6574AU, QCA6584, QCA6584AU, QCA9367, QCA9377, QET4100, QET4101, QET4200AQ, QFE1035, QFE1040, QFE1045, QFE2340, QFE2550, QFE3100, QFE3320, QFE3335, QFE3345, QLN1021AQ, QLN1030, QLN1031, QLN1036AQ, QPA4340, QPA4360, QPA5460, QSW8573, QTC800H, QTC800S, QTC800T, RGR7640AU, RSW8577, SD 636, SD205, SD210, SD660, SD820, SD821, SD835, SDM630, SDR660, SDW2500, SDW3100, SDX20, SDX20M, SMB1350, SMB1351, SMB1357, SMB1358, SMB1360, SMB1380, SMB231, SMB358S, WCD9306, WCD9326, WCD9330, WCD9335, WCD9340, WCD9341, WCN3610, WCN3615, WCN3620, WCN3660B, WCN3680B, WCN3980, WCN3990, WGR7640, WSA8810, WSA8815, WTR2955, WTR2965, WTR3905, WTR3925, WTR3950, WTR4905, WTR5975"
}
]
}
}
]
},
"vendor_name": "Qualcomm, Inc."
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface \u0026 endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables"
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Untrusted Pointer Dereference in Wired Connectivity"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin",
"refsource": "CONFIRM",
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin"
}
]
}
},
"nvd.nist.gov": {
"configurations": {
"CVE_data_version": "4.0",
"nodes": [
{
"children": [],
"cpe_match": [
{
"cpe23Uri": "cpe:2.3:h:qualcomm:apq8009:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:apq8009w:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:apq8017:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:apq8053:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:apq8064au:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:apq8076:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:apq8096au:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:ar8151:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:csr6030:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9206:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9230:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9250:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9330:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9607:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9626:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9628:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9630:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9640:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9650:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:mdm9655:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:msm8909w:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:msm8937:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:msm8996au:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm660:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm660a:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm660l:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm8004:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm8005:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm8909:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm8916:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm8937:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm8952:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm8953:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm8956:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm8996:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pm8998:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmd9607:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmd9635:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmd9645:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmd9655:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmi8937:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmi8952:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmi8994:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmi8996:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmi8998:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmk8001:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmm8996au:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:pmx20:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qat3514:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qat3522:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qat3550:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qbt1000:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qbt1500:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6174:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6174a:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6310:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6320:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6564a:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6564au:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6574:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6574a:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6584:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca6584au:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca9367:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qca9377:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qet4100:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qet4101:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qet4200aq:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qfe1035:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qfe1040:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qfe1045:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qfe2340:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qfe2550:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qfe3100:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qfe3320:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qfe3335:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qfe3345:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qln1021aq:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qln1030:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qln1031:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qln1036aq:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qpa4340:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qpa4360:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qpa5460:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qsw8573:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qtc800h:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qtc800s:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:qtc800t:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:rgr7640au:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:rsw8577:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sd205:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sd210:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sd660:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sd820:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sd821:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sd835:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sd_636:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sdm630:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sdr660:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sdw2500:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sdw3100:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sdx20:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:sdx20m:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:smb1350:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:smb1351:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:smb1357:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:smb1358:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:smb1360:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:smb1380:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:smb231:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:smb358s:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcd9306:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcd9326:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcd9330:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcd9335:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcd9340:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcd9341:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcn3610:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcn3615:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcn3680b:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wcn3990:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wgr7640:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wsa8810:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wsa8815:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wtr2955:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wtr2965:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wtr3905:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wtr3925:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wtr3950:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wtr4905:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:h:qualcomm:wtr5975:-:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
}
],
"operator": "OR"
}
]
},
"cve": {
"CVE_data_meta": {
"ASSIGNER": "security.cna@qualcomm.com",
"ID": "CVE-2020-11286"
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "en",
"value": "An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface \u0026 endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables"
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "en",
"value": "CWE-119"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin",
"refsource": "CONFIRM",
"tags": [
"Patch",
"Vendor Advisory"
],
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin"
}
]
}
},
"impact": {
"baseMetricV2": {
"acInsufInfo": false,
"cvssV2": {
"accessComplexity": "LOW",
"accessVector": "LOCAL",
"authentication": "NONE",
"availabilityImpact": "PARTIAL",
"baseScore": 4.6,
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:P",
"version": "2.0"
},
"exploitabilityScore": 3.9,
"impactScore": 6.4,
"obtainAllPrivilege": false,
"obtainOtherPrivilege": false,
"obtainUserPrivilege": false,
"severity": "MEDIUM",
"userInteractionRequired": false
},
"baseMetricV3": {
"cvssV3": {
"attackComplexity": "LOW",
"attackVector": "PHYSICAL",
"availabilityImpact": "HIGH",
"baseScore": 6.8,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
},
"exploitabilityScore": 0.9,
"impactScore": 5.9
}
},
"lastModifiedDate": "2021-07-21T11:39Z",
"publishedDate": "2021-02-22T07:15Z"
}
}
}
FKIE_CVE-2020-11286
Vulnerability from fkie_nvd - Published: 2021-02-22 07:15 - Updated: 2024-11-21 04:57
Severity ?
Summary
An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface & endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
References
Impacted products
{
"configurations": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:h:qualcomm:apq8009:-:*:*:*:*:*:*:*",
"matchCriteriaId": "7CC498E0-B82B-4A53-8F55-6C1DA58AFA88",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:apq8009w:-:*:*:*:*:*:*:*",
"matchCriteriaId": "1549F2DF-1B57-4091-9052-9A5E082E9C63",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:apq8017:-:*:*:*:*:*:*:*",
"matchCriteriaId": "8D29295A-7183-46BE-B4EE-F891D1C17ED9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:apq8053:-:*:*:*:*:*:*:*",
"matchCriteriaId": "19B59B60-A298-4A56-A45A-E34B7AAB43D7",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:apq8064au:-:*:*:*:*:*:*:*",
"matchCriteriaId": "BEE2C7C3-E928-4466-B537-0D1826E2223C",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:apq8076:-:*:*:*:*:*:*:*",
"matchCriteriaId": "E19E8B60-4C5C-4D1C-B9F0-AB1FC1F58949",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:apq8096au:-:*:*:*:*:*:*:*",
"matchCriteriaId": "B1F31FFB-982A-4308-82F8-C2480DABDED8",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:ar8151:-:*:*:*:*:*:*:*",
"matchCriteriaId": "4A891C1A-2A7F-42AC-A058-D4063FA9C48B",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:csr6030:-:*:*:*:*:*:*:*",
"matchCriteriaId": "6417459D-45F7-40A0-B46C-36DF5C0921D3",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9206:-:*:*:*:*:*:*:*",
"matchCriteriaId": "D79B8959-3D1E-4B48-9181-D75FE90AAF98",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9230:-:*:*:*:*:*:*:*",
"matchCriteriaId": "9D10C089-B7AF-41E3-A8FD-456354FB1310",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9250:-:*:*:*:*:*:*:*",
"matchCriteriaId": "268F94E5-15A2-4BCA-BE1B-0B6A7179B9C9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9330:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5F9133B8-5415-4840-BD0A-54ACF3F26988",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9607:-:*:*:*:*:*:*:*",
"matchCriteriaId": "E9765187-8653-4D66-B230-B2CE862AC5C0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9626:-:*:*:*:*:*:*:*",
"matchCriteriaId": "36F78C96-2227-419D-8254-28A10B5298D4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9628:-:*:*:*:*:*:*:*",
"matchCriteriaId": "F6BD8A1C-D9AB-4BE7-A855-31E58631879C",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9630:-:*:*:*:*:*:*:*",
"matchCriteriaId": "16BF7E2D-498E-4AF2-9897-757902914AC3",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9640:-:*:*:*:*:*:*:*",
"matchCriteriaId": "716B747E-672C-4B95-9D8E-1262338E67EA",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9650:-:*:*:*:*:*:*:*",
"matchCriteriaId": "ECD99C6F-2444-4A5E-A517-0C8023DDF23D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:mdm9655:-:*:*:*:*:*:*:*",
"matchCriteriaId": "520B217E-C02B-493D-8C11-E155E50357B0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:msm8909w:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5DEE828B-09A7-4AC1-8134-491A7C87C118",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:msm8937:-:*:*:*:*:*:*:*",
"matchCriteriaId": "A58B5A6E-84B9-4356-9CFE-4E80BD81FB33",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:msm8996au:-:*:*:*:*:*:*:*",
"matchCriteriaId": "95CB08EC-AE12-4A54-AA3C-998F01FC8763",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm660:-:*:*:*:*:*:*:*",
"matchCriteriaId": "2EA4BC14-3A93-42C9-A51F-54C229FB2617",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm660a:-:*:*:*:*:*:*:*",
"matchCriteriaId": "BE38E9BD-E0A7-4B34-AE3B-41363F90487A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm660l:-:*:*:*:*:*:*:*",
"matchCriteriaId": "E5E2BC76-B6BB-44A0-9023-116EAA66B388",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm8004:-:*:*:*:*:*:*:*",
"matchCriteriaId": "6CAA0E9B-33D8-414B-86CB-DF6D04746144",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm8005:-:*:*:*:*:*:*:*",
"matchCriteriaId": "79BD6E76-BDF4-4AAD-A63B-C4AD2971C065",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm8909:-:*:*:*:*:*:*:*",
"matchCriteriaId": "2950D103-C664-44CE-86FC-49A03861441F",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm8916:-:*:*:*:*:*:*:*",
"matchCriteriaId": "FEDA1620-8FFC-4DF4-9CBC-188D21581CF2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm8937:-:*:*:*:*:*:*:*",
"matchCriteriaId": "6B8E31E7-9ED7-4F8E-ADC8-60C087F4E340",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm8952:-:*:*:*:*:*:*:*",
"matchCriteriaId": "FE52BCE5-D82D-4132-9859-FF341393444D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm8953:-:*:*:*:*:*:*:*",
"matchCriteriaId": "316C919A-BD79-4859-9F85-AEDBA5E6137A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm8956:-:*:*:*:*:*:*:*",
"matchCriteriaId": "2E17F687-C701-41ED-BBE0-8AC6E72D2556",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm8996:-:*:*:*:*:*:*:*",
"matchCriteriaId": "D73F8807-D22E-4E11-81FB-92DC5F38F0B4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pm8998:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5B87120F-592A-4D3C-801D-8C8980731FA4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmd9607:-:*:*:*:*:*:*:*",
"matchCriteriaId": "ADCC2ABB-B97B-4414-89EC-39ED674E9A12",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmd9635:-:*:*:*:*:*:*:*",
"matchCriteriaId": "4D94C9DD-08B2-44A4-B789-F9B9D51E7F7D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmd9645:-:*:*:*:*:*:*:*",
"matchCriteriaId": "F95D237E-FF3D-497B-AC48-FBAEFD4481BD",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmd9655:-:*:*:*:*:*:*:*",
"matchCriteriaId": "714DDC1D-116D-41F4-9E97-55DD97D54DE5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmi8937:-:*:*:*:*:*:*:*",
"matchCriteriaId": "8A176D9B-816F-47CA-B8BC-E4E7C1E96325",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmi8952:-:*:*:*:*:*:*:*",
"matchCriteriaId": "9F914570-082A-4276-85DB-ADA944BA771F",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmi8994:-:*:*:*:*:*:*:*",
"matchCriteriaId": "FB63FC0F-DCE3-4F34-8851-3EEBCB52E39B",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmi8996:-:*:*:*:*:*:*:*",
"matchCriteriaId": "35B8B946-9FC6-420C-84F6-B521859380C5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmi8998:-:*:*:*:*:*:*:*",
"matchCriteriaId": "FAAAE437-C4CA-4789-92BD-9AAF67621407",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmk8001:-:*:*:*:*:*:*:*",
"matchCriteriaId": "DCF8E316-1EBD-46B3-8ECE-6FC992AC5B55",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmm8996au:-:*:*:*:*:*:*:*",
"matchCriteriaId": "E5516F89-799D-412F-BE65-98B0AD1D1F9D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:pmx20:-:*:*:*:*:*:*:*",
"matchCriteriaId": "1D4BB932-1427-4598-93BF-A35B8B5E53A6",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qat3514:-:*:*:*:*:*:*:*",
"matchCriteriaId": "53A0FCE5-32EE-4999-8D63-B438862B49A1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qat3522:-:*:*:*:*:*:*:*",
"matchCriteriaId": "298034D1-85C6-42AF-BC06-7B19A8C84FBB",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qat3550:-:*:*:*:*:*:*:*",
"matchCriteriaId": "FAF6F7AF-9839-46A1-8552-ED6F9F246E98",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qbt1000:-:*:*:*:*:*:*:*",
"matchCriteriaId": "C561FB7A-621D-405D-8CBF-EC2E7640E241",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qbt1500:-:*:*:*:*:*:*:*",
"matchCriteriaId": "B8B8C5E9-3F03-4A5E-95FC-B9318BA85268",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6174:-:*:*:*:*:*:*:*",
"matchCriteriaId": "D2AD8F5C-1FEB-45C2-BC8F-123C2BEB0EA5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6174a:-:*:*:*:*:*:*:*",
"matchCriteriaId": "C31FA74C-6659-4457-BC32-257624F43C66",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6310:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5B0F8ED6-EAE7-44EA-A8C6-F5AD408261F0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6320:-:*:*:*:*:*:*:*",
"matchCriteriaId": "059486E9-3F99-4C65-A763-470564EDAF2C",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6564a:-:*:*:*:*:*:*:*",
"matchCriteriaId": "93ED74CE-6BF2-4983-8780-07D5336745B3",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6564au:-:*:*:*:*:*:*:*",
"matchCriteriaId": "3847F4A5-90A5-4C84-B43F-0DDD81BD79CE",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6574:-:*:*:*:*:*:*:*",
"matchCriteriaId": "66C16E1E-9D4A-4F20-B697-833FDCCA86FB",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6574a:-:*:*:*:*:*:*:*",
"matchCriteriaId": "11405993-5903-4716-B452-370281034B42",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*",
"matchCriteriaId": "8374DDB3-D484-4141-AE0C-42333D2721F6",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6584:-:*:*:*:*:*:*:*",
"matchCriteriaId": "7F0C9ED5-27E3-48EC-9A05-862715EE2034",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca6584au:-:*:*:*:*:*:*:*",
"matchCriteriaId": "51A87BDA-5B24-4212-BAB3-D2BBB2F4162E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca9367:-:*:*:*:*:*:*:*",
"matchCriteriaId": "3FBA48AB-85F4-4D6C-B811-87756B80FFB8",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qca9377:-:*:*:*:*:*:*:*",
"matchCriteriaId": "98E58C63-F253-4DCC-8A14-48FEB64B4C3D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qet4100:-:*:*:*:*:*:*:*",
"matchCriteriaId": "546B6CD2-AED0-41D4-B641-03CCAE9FEF50",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qet4101:-:*:*:*:*:*:*:*",
"matchCriteriaId": "7872ACFC-C2BF-43EC-B061-A100EF25A70D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qet4200aq:-:*:*:*:*:*:*:*",
"matchCriteriaId": "E8DC39DD-C387-469E-99D3-A555B7A09144",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qfe1035:-:*:*:*:*:*:*:*",
"matchCriteriaId": "4EA96119-0D78-4670-8B22-AD5AEE2C30B1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qfe1040:-:*:*:*:*:*:*:*",
"matchCriteriaId": "ED257DFF-994C-4CD9-96AA-AFE5F15AE929",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qfe1045:-:*:*:*:*:*:*:*",
"matchCriteriaId": "15FC09F3-32D6-4FA3-B93F-917B6448B541",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qfe2340:-:*:*:*:*:*:*:*",
"matchCriteriaId": "B7E73C00-29F6-42C9-9AE0-70B373D9679C",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qfe2550:-:*:*:*:*:*:*:*",
"matchCriteriaId": "DC33174B-9D45-4C82-BDC1-A60B085A4513",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qfe3100:-:*:*:*:*:*:*:*",
"matchCriteriaId": "F0A6D656-2A27-4F9F-A3BD-80ADD4141716",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qfe3320:-:*:*:*:*:*:*:*",
"matchCriteriaId": "7DD1BAE7-58B8-45E5-9CB7-D337BF4F9597",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qfe3335:-:*:*:*:*:*:*:*",
"matchCriteriaId": "B890E12C-EE5F-4A93-AAED-CF68949243DF",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qfe3345:-:*:*:*:*:*:*:*",
"matchCriteriaId": "7CF9AD63-E29A-4719-BF61-FF6AF65AFB11",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qln1021aq:-:*:*:*:*:*:*:*",
"matchCriteriaId": "54445C4C-3451-4340-B394-6871672C0CCE",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qln1030:-:*:*:*:*:*:*:*",
"matchCriteriaId": "573508F1-F522-4134-BCDB-ADB5A944D24A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qln1031:-:*:*:*:*:*:*:*",
"matchCriteriaId": "0C2B8150-D0E4-455D-B5BF-900D7F176407",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qln1036aq:-:*:*:*:*:*:*:*",
"matchCriteriaId": "F7C3BF73-D2CC-4659-B65F-C90C9D023926",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qpa4340:-:*:*:*:*:*:*:*",
"matchCriteriaId": "0A798933-E2CA-439F-B4C7-D99327C5E598",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qpa4360:-:*:*:*:*:*:*:*",
"matchCriteriaId": "0724FE57-87D4-45FB-B189-D45A80C679D5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qpa5460:-:*:*:*:*:*:*:*",
"matchCriteriaId": "301D3BA4-AD96-4594-9FB6-EF34E81E46D9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qsw8573:-:*:*:*:*:*:*:*",
"matchCriteriaId": "6BC1FD31-5D16-4901-8C83-F8882A6476E0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qtc800h:-:*:*:*:*:*:*:*",
"matchCriteriaId": "462C175D-5C9B-4CC1-8329-B21656DB99CB",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qtc800s:-:*:*:*:*:*:*:*",
"matchCriteriaId": "31B59D37-17C1-452C-89FA-6A2A05AAC444",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:qtc800t:-:*:*:*:*:*:*:*",
"matchCriteriaId": "E565D527-776F-4BBB-8EEC-C9D28662EA6E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:rgr7640au:-:*:*:*:*:*:*:*",
"matchCriteriaId": "E2800A0C-816B-46DB-974D-C48049026D20",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:rsw8577:-:*:*:*:*:*:*:*",
"matchCriteriaId": "930596BD-6024-4BAB-9BC3-4391F254DB7C",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sd_636:-:*:*:*:*:*:*:*",
"matchCriteriaId": "0947F38F-3DC2-45F1-B3B3-963922F32054",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sd205:-:*:*:*:*:*:*:*",
"matchCriteriaId": "FCEF246C-6B39-4DC2-81B0-040DCAAD5177",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sd210:-:*:*:*:*:*:*:*",
"matchCriteriaId": "E75C7497-A7DC-436B-BACD-71F69D99517D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sd660:-:*:*:*:*:*:*:*",
"matchCriteriaId": "D9CF5EBB-B25A-4A76-B522-951F108263CC",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sd820:-:*:*:*:*:*:*:*",
"matchCriteriaId": "E9665200-D306-4EEB-9F42-6C5963524179",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sd821:-:*:*:*:*:*:*:*",
"matchCriteriaId": "028CD81A-0D9D-40B0-9E2F-DC8689607B24",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sd835:-:*:*:*:*:*:*:*",
"matchCriteriaId": "908BFD96-0423-4AFC-B8F3-105B2D5B4C73",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sdm630:-:*:*:*:*:*:*:*",
"matchCriteriaId": "814FF3F3-CD5A-45A3-988C-6457D2CEB48C",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sdr660:-:*:*:*:*:*:*:*",
"matchCriteriaId": "C543239C-018C-42C1-AC4F-5359810395BB",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sdw2500:-:*:*:*:*:*:*:*",
"matchCriteriaId": "BB68017C-27CF-4327-AB81-BCD286A73CC0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sdw3100:-:*:*:*:*:*:*:*",
"matchCriteriaId": "A0D6A7E3-9860-4CF5-B421-37A73C6EAA84",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sdx20:-:*:*:*:*:*:*:*",
"matchCriteriaId": "794BA13C-3C63-4695-AA45-676F85D904BE",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:sdx20m:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5765D9F4-4090-4470-A90A-7E72A50881AF",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:smb1350:-:*:*:*:*:*:*:*",
"matchCriteriaId": "613EF01F-1445-4C06-B81F-CE244E07EE63",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:smb1351:-:*:*:*:*:*:*:*",
"matchCriteriaId": "54720F88-446D-47BD-9F0B-DD45C968C50D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:smb1357:-:*:*:*:*:*:*:*",
"matchCriteriaId": "C07E0E47-D8FA-48E0-BDC9-C6E21E8CC489",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:smb1358:-:*:*:*:*:*:*:*",
"matchCriteriaId": "726EF442-9D09-4C76-8EAE-8BCA61A127A4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:smb1360:-:*:*:*:*:*:*:*",
"matchCriteriaId": "FB1D7205-33E9-452B-BECD-F551801071DE",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:smb1380:-:*:*:*:*:*:*:*",
"matchCriteriaId": "A8DDD62E-7BCD-4214-ACD8-9FB082E5B9C4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:smb231:-:*:*:*:*:*:*:*",
"matchCriteriaId": "EC187295-155D-4C73-8CF1-AC4CA0DDD6A4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:smb358s:-:*:*:*:*:*:*:*",
"matchCriteriaId": "7A7EBCE6-BD75-44F4-9534-E1DAB4DB625D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcd9306:-:*:*:*:*:*:*:*",
"matchCriteriaId": "F51C69B9-F0AB-4BF5-A8C2-64FEB7075593",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcd9326:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5A39A2E5-6D8D-4F6E-98CB-96DB1975A4BC",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcd9330:-:*:*:*:*:*:*:*",
"matchCriteriaId": "BC3D23FE-B3D5-4EC3-8268-98F12181966D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcd9335:-:*:*:*:*:*:*:*",
"matchCriteriaId": "4D1A7188-7D5D-4D46-AEAB-08BA84FFF539",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcd9340:-:*:*:*:*:*:*:*",
"matchCriteriaId": "94D2BDF1-764C-48BA-8944-3275E8768078",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcd9341:-:*:*:*:*:*:*:*",
"matchCriteriaId": "4D9E96B3-F1BB-46F8-B715-7DF90180F1E1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcn3610:-:*:*:*:*:*:*:*",
"matchCriteriaId": "044A14FB-64F6-4200-AC85-8DC91C31BD16",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcn3615:-:*:*:*:*:*:*:*",
"matchCriteriaId": "7A7D32B3-325E-4B1F-8649-3D0071396BBA",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*",
"matchCriteriaId": "62B00662-139A-4E36-98FA-D4F7D101D4AB",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*",
"matchCriteriaId": "6BCD2FE2-11F2-4B2A-9BD7-EB26718139DA",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcn3680b:-:*:*:*:*:*:*:*",
"matchCriteriaId": "BE861CE7-B530-4698-A9BC-43A159647BF2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:*",
"matchCriteriaId": "B36D3274-F8D0-49C5-A6D5-95F5DC6D1950",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wcn3990:-:*:*:*:*:*:*:*",
"matchCriteriaId": "D5F28E29-520F-469E-B048-62DE2EF07ADD",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wgr7640:-:*:*:*:*:*:*:*",
"matchCriteriaId": "31DA4BC4-C634-4F62-A49E-5AD8F4FD4672",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wsa8810:-:*:*:*:*:*:*:*",
"matchCriteriaId": "AA85B322-E593-4499-829A-CC6D70BAE884",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wsa8815:-:*:*:*:*:*:*:*",
"matchCriteriaId": "7E870D82-DE3B-4199-A730-C8FB545BAA98",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wtr2955:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5516E6E3-D8DA-4172-A059-503B369E2034",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wtr2965:-:*:*:*:*:*:*:*",
"matchCriteriaId": "A1267A5A-D6C7-405B-AD58-6A80A30E6813",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wtr3905:-:*:*:*:*:*:*:*",
"matchCriteriaId": "D392B560-568E-4D51-B68D-7D389308E724",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wtr3925:-:*:*:*:*:*:*:*",
"matchCriteriaId": "27666130-DB04-457F-A968-3919FD5314BC",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wtr3950:-:*:*:*:*:*:*:*",
"matchCriteriaId": "A8564585-F7D6-4F26-A930-405DE51C4F70",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wtr4905:-:*:*:*:*:*:*:*",
"matchCriteriaId": "A503AA01-CFD9-42D5-81D6-2F13E5DDA9A1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:h:qualcomm:wtr5975:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5E6A369D-F473-4FBE-BDFA-ECA2D8578F19",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface \u0026 endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables"
},
{
"lang": "es",
"value": "Se puede producir una Desreferencia del Puntero no Confiable mientras se realizan transferencias de control USB, si m\u00faltiples peticiones de diferentes categor\u00edas de peticiones est\u00e1ndar, como dispositivo, interfaz y endpoint son realizadas juntas\u0026#xa0;en los productos Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026amp; Music, Snapdragon Wearables"
}
],
"id": "CVE-2020-11286",
"lastModified": "2024-11-21T04:57:44.147",
"metrics": {
"cvssMetricV2": [
{
"acInsufInfo": false,
"baseSeverity": "MEDIUM",
"cvssData": {
"accessComplexity": "LOW",
"accessVector": "LOCAL",
"authentication": "NONE",
"availabilityImpact": "PARTIAL",
"baseScore": 4.6,
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:P",
"version": "2.0"
},
"exploitabilityScore": 3.9,
"impactScore": 6.4,
"obtainAllPrivilege": false,
"obtainOtherPrivilege": false,
"obtainUserPrivilege": false,
"source": "nvd@nist.gov",
"type": "Primary",
"userInteractionRequired": false
}
],
"cvssMetricV31": [
{
"cvssData": {
"attackComplexity": "LOW",
"attackVector": "PHYSICAL",
"availabilityImpact": "HIGH",
"baseScore": 6.8,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
},
"exploitabilityScore": 0.9,
"impactScore": 5.9,
"source": "nvd@nist.gov",
"type": "Primary"
}
]
},
"published": "2021-02-22T07:15:15.143",
"references": [
{
"source": "product-security@qualcomm.com",
"tags": [
"Patch",
"Vendor Advisory"
],
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Patch",
"Vendor Advisory"
],
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin"
}
],
"sourceIdentifier": "product-security@qualcomm.com",
"vulnStatus": "Modified",
"weaknesses": [
{
"description": [
{
"lang": "en",
"value": "CWE-119"
}
],
"source": "nvd@nist.gov",
"type": "Primary"
}
]
}
CERTFR-2021-AVI-071
Vulnerability from certfr_avis - Published: 2021-02-02 - Updated: 2021-02-02
De multiples vulnérabilités ont été découvertes dans Google Android. Certaines d'entre elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur, une exécution de code arbitraire à distance et un déni de service à distance.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
NoneImpacted products
References
| Title | Publication Time | Tags | ||||||
|---|---|---|---|---|---|---|---|---|
|
||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "Google Android toutes versions sans le correctif du 01 f\u00e9vrier 2020",
"product": {
"name": "Android",
"vendor": {
"name": "Google",
"scada": false
}
}
}
],
"affected_systems_content": null,
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2017-18509",
"url": "https://www.cve.org/CVERecord?id=CVE-2017-18509"
},
{
"name": "CVE-2021-0331",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0331"
},
{
"name": "CVE-2021-0341",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0341"
},
{
"name": "CVE-2020-11163",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11163"
},
{
"name": "CVE-2020-11281",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11281"
},
{
"name": "CVE-2021-0329",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0329"
},
{
"name": "CVE-2020-11272",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11272"
},
{
"name": "CVE-2020-11180",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11180"
},
{
"name": "CVE-2020-11280",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11280"
},
{
"name": "CVE-2020-11282",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11282"
},
{
"name": "CVE-2020-11287",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11287"
},
{
"name": "CVE-2021-0327",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0327"
},
{
"name": "CVE-2020-11283",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11283"
},
{
"name": "CVE-2020-11276",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11276"
},
{
"name": "CVE-2020-11177",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11177"
},
{
"name": "CVE-2020-11269",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11269"
},
{
"name": "CVE-2021-0339",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0339"
},
{
"name": "CVE-2021-0333",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0333"
},
{
"name": "CVE-2020-11296",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11296"
},
{
"name": "CVE-2021-0326",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0326"
},
{
"name": "CVE-2021-0336",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0336"
},
{
"name": "CVE-2021-0330",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0330"
},
{
"name": "CVE-2020-11270",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11270"
},
{
"name": "CVE-2021-0335",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0335"
},
{
"name": "CVE-2021-0340",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0340"
},
{
"name": "CVE-2021-0314",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0314"
},
{
"name": "CVE-2021-0328",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0328"
},
{
"name": "CVE-2020-11271",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11271"
},
{
"name": "CVE-2020-11170",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11170"
},
{
"name": "CVE-2021-0337",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0337"
},
{
"name": "CVE-2020-11277",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11277"
},
{
"name": "CVE-2020-11297",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11297"
},
{
"name": "CVE-2020-11187",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11187"
},
{
"name": "CVE-2020-11278",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11278"
},
{
"name": "CVE-2021-0325",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0325"
},
{
"name": "CVE-2020-11203",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11203"
},
{
"name": "CVE-2021-0302",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0302"
},
{
"name": "CVE-2021-0305",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0305"
},
{
"name": "CVE-2020-11286",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11286"
},
{
"name": "CVE-2021-0338",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0338"
},
{
"name": "CVE-2020-11275",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11275"
},
{
"name": "CVE-2021-0332",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0332"
},
{
"name": "CVE-2020-11253",
"url": "https://www.cve.org/CVERecord?id=CVE-2020-11253"
},
{
"name": "CVE-2021-0334",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-0334"
}
],
"initial_release_date": "2021-02-02T00:00:00",
"last_revision_date": "2021-02-02T00:00:00",
"links": [],
"reference": "CERTFR-2021-AVI-071",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2021-02-02T00:00:00.000000"
}
],
"risks": [
{
"description": "D\u00e9ni de service \u00e0 distance"
},
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
},
{
"description": "\u00c9l\u00e9vation de privil\u00e8ges"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Google Android.\nCertaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer un\nprobl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur, une ex\u00e9cution de code\narbitraire \u00e0 distance et un d\u00e9ni de service \u00e0 distance.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Google Android",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Android du 01 f\u00e9vrier 2021",
"url": "https://source.android.com/security/bulletin/2021-02-01"
},
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Pixel du 01 f\u00e9vrier 2021",
"url": "https://source.android.com/security/bulletin/pixel/2021-02-01"
}
]
}
GHSA-F3GR-QVC9-J8PV
Vulnerability from github – Published: 2022-05-24 17:42 – Updated: 2022-05-24 17:42
VLAI?
Details
An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface & endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
{
"affected": [],
"aliases": [
"CVE-2020-11286"
],
"database_specific": {
"cwe_ids": [
"CWE-476"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2021-02-22T07:15:00Z",
"severity": "MODERATE"
},
"details": "An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard request categories like device, interface \u0026 endpoint are made together. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice \u0026 Music, Snapdragon Wearables",
"id": "GHSA-f3gr-qvc9-j8pv",
"modified": "2022-05-24T17:42:46Z",
"published": "2022-05-24T17:42:46Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-11286"
},
{
"type": "WEB",
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin"
}
],
"schema_version": "1.4.0",
"severity": []
}
Loading…
Loading…
Sightings
| Author | Source | Type | Date |
|---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or observed by the user.
- Confirmed: The vulnerability has been validated from an analyst's perspective.
- Published Proof of Concept: A public proof of concept is available for this vulnerability.
- Exploited: The vulnerability was observed as exploited by the user who reported the sighting.
- Patched: The vulnerability was observed as successfully patched by the user who reported the sighting.
- Not exploited: The vulnerability was not observed as exploited by the user who reported the sighting.
- Not confirmed: The user expressed doubt about the validity of the vulnerability.
- Not patched: The vulnerability was not observed as successfully patched by the user who reported the sighting.
Loading…
Loading…