Vulnerability Description
Integer overflow in boot due to improper length check on arguments received in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Apq8009 Firmware | - |
| Qualcomm | Apq8009 | - |
| Qualcomm | Apq8053 Firmware | - |
| Qualcomm | Apq8053 | - |
| Qualcomm | Mdm9206 Firmware | - |
| Qualcomm | Mdm9206 | - |
| Qualcomm | Pm8909 Firmware | - |
| Qualcomm | Pm8909 | - |
| Qualcomm | Pm8916 Firmware | - |
| Qualcomm | Pm8916 | - |
| Qualcomm | Pm8953 Firmware | - |
| Qualcomm | Pm8953 | - |
| Qualcomm | Pmd9607 Firmware | - |
| Qualcomm | Pmd9607 | - |
| Qualcomm | Pmi8952 Firmware | - |
| Qualcomm | Pmi8952 | - |
| Qualcomm | Qca9367 Firmware | - |
| Qualcomm | Qca9367 | - |
| Qualcomm | Qca9377 Firmware | - |
| Qualcomm | Qca9377 | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/march-2021-bulletinPatchVendor Advisory
- https://www.qualcomm.com/company/product-security/bulletins/march-2021-bulletinPatchVendor Advisory
FAQ
What is CVE-2020-11305?
CVE-2020-11305 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Integer overflow in boot due to improper length check on arguments received in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music
How severe is CVE-2020-11305?
CVE-2020-11305 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-11305?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Apq8009 Firmware, Qualcomm Apq8009, Qualcomm Apq8053 Firmware, Qualcomm Apq8053, Qualcomm Mdm9206 Firmware.