7.5
CVSSv2

CVE-2020-3699

Published: 30/07/2020 Updated: 31/07/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Possible out of bound access while processing assoc response from host due to improper length check before copying into buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, Nicobar, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCM2150, QCN7605, QCS405, QCS605, QM215, SA6155P, Saipan, SC8180X, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM845, SDX20, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm apq8009_firmware -

qualcomm apq8017_firmware -

qualcomm apq8053_firmware -

qualcomm apq8096au_firmware -

qualcomm mdm9206_firmware -

qualcomm mdm9207c_firmware -

qualcomm mdm9607_firmware -

qualcomm mdm9640_firmware -

qualcomm mdm9650_firmware -

qualcomm msm8905_firmware -

qualcomm msm8909w_firmware -

qualcomm msm8917_firmware -

qualcomm msm8920_firmware -

qualcomm msm8937_firmware -

qualcomm msm8940_firmware -

qualcomm msm8953_firmware -

qualcomm msm8996au_firmware -

qualcomm nicobar_firmware -

qualcomm qca6174a_firmware -

qualcomm qca6574au_firmware -

qualcomm qca9377_firmware -

qualcomm qca9379_firmware -

qualcomm qcm2150_firmware -

qualcomm qcn7605_firmware -

qualcomm qcs405_firmware -

qualcomm qcs605_firmware -

qualcomm qm215_firmware -

qualcomm sa6155p_firmware -

qualcomm saipan_firmware -

qualcomm sc8180x_firmware -

qualcomm sda845_firmware -

qualcomm sdm429_firmware -

qualcomm sdm429w_firmware -

qualcomm sdm439_firmware -

qualcomm sdm450_firmware -

qualcomm sdm630_firmware -

qualcomm sdm632_firmware -

qualcomm sdm636_firmware -

qualcomm sdm660_firmware -

qualcomm sdm845_firmware -

qualcomm sdx20_firmware -

qualcomm sdx55_firmware -

qualcomm sm6150_firmware -

qualcomm sm7150_firmware -

qualcomm sm8150_firmware -

qualcomm sm8250_firmware -

qualcomm sxr2130_firmware -

Recent Articles

Old-school security hole perfect for worms and remote hijackings found lurking in Windows Server DNS code
The Register • Shaun Nichols in San Francisco • 15 Jul 2020

You'll want to patch that – and all these other bugs fixed by Microsoft, Oracle, Adobe, VMware, SAP, Google So kind of SAP NetWeaver to hand out admin accounts to anyone who can reach it. You'll want to patch this

Mega Patch Tuesday Microsoft on Tuesday patched a wormable hole in its Windows Server software that can be exploited remotely to completely commandeer the machine without any authorization. It was one of hundreds of security bugs squashed today by Redmond along with Oracle, Adobe, VMware, SAP and Google. Microsoft emitted fixes for 123 vulnerabilities in this month's Patch Tuesday batch. Some 18 of those CVE-listed security flaws are considered critical, meaning remote code execution (RCE) is po...