Vulnerability Description
Out of bound in camera driver due to lack of check of validation of array index before copying into array in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Aqt1000 Firmware | - |
| Qualcomm | Aqt1000 | - |
| Qualcomm | Pm3003A Firmware | - |
| Qualcomm | Pm3003A | - |
| Qualcomm | Pm456 Firmware | - |
| Qualcomm | Pm456 | - |
| Qualcomm | Pm6150 Firmware | - |
| Qualcomm | Pm6150 | - |
| Qualcomm | Pm6150A Firmware | - |
| Qualcomm | Pm6150A | - |
| Qualcomm | Pm6150L Firmware | - |
| Qualcomm | Pm6150L | - |
| Qualcomm | Pm6250 Firmware | - |
| Qualcomm | Pm6250 | - |
| Qualcomm | Pm6350 Firmware | - |
| Qualcomm | Pm6350 | - |
| Qualcomm | Pm660 Firmware | - |
| Qualcomm | Pm660 | - |
| Qualcomm | Pm660A Firmware | - |
| Qualcomm | Pm660A | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletVendor Advisory
- https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletVendor Advisory
FAQ
What is CVE-2020-11223?
CVE-2020-11223 is a vulnerability with a CVSS score of 7.8 (HIGH). Out of bound in camera driver due to lack of check of validation of array index before copying into array in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sn...
How severe is CVE-2020-11223?
CVE-2020-11223 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-11223?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Aqt1000 Firmware, Qualcomm Aqt1000, Qualcomm Pm3003A Firmware, Qualcomm Pm3003A, Qualcomm Pm456 Firmware.