MEDIUM · 5.5

CVE-2020-11122

u'Null Pointer exception while playing crafted mkv file as data stream get deleted on secondary invalid configuration' in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile in APQ8098, Bitra,...

Vulnerability Description

u'Null Pointer exception while playing crafted mkv file as data stream get deleted on secondary invalid configuration' in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile in APQ8098, Bitra, Kamorta, SA6155P, Saipan, SM6150, SM7150, SM8150, SM8250, SXR2130

CVSS Score

5.5

MEDIUM

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
QualcommApq8098 Firmware-
QualcommApq8098-
QualcommBitra Firmware-
QualcommBitra-
QualcommKamorta Firmware-
QualcommKamorta-
QualcommSa6155P Firmware-
QualcommSa6155P-
QualcommSaipan Firmware-
QualcommSaipan-
QualcommSm6150 Firmware-
QualcommSm6150-
QualcommSm7150 Firmware-
QualcommSm7150-
QualcommSm8150 Firmware-
QualcommSm8150-
QualcommSm8250 Firmware-
QualcommSm8250-
QualcommSxr2130 Firmware-
QualcommSxr2130-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2020-11122?

CVE-2020-11122 is a vulnerability with a CVSS score of 5.5 (MEDIUM). u'Null Pointer exception while playing crafted mkv file as data stream get deleted on secondary invalid configuration' in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile in APQ8098, Bitra,...

How severe is CVE-2020-11122?

CVE-2020-11122 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-11122?

Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Apq8098 Firmware, Qualcomm Apq8098, Qualcomm Bitra Firmware, Qualcomm Bitra, Qualcomm Kamorta Firmware.