A process can potentially cause a buffer overflow in the display service allowing privilege escalation by executing code as that service in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Metrics
No CVSS v4.0
Attack Vector Local
Attack Complexity Low
Privileges Required High
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact High
User Interaction None
No CVSS v3.0
Access Vector Local
Access Complexity Low
Authentication None
Confidentiality Impact Complete
Integrity Impact Complete
Availability Impact Complete
This CVE is not in the KEV list.
The EPSS score is 0.00038.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Qualcomm
Subscribe
|
Apq8009
Subscribe
Apq8009w
Subscribe
Apq8017
Subscribe
Apq8037
Subscribe
Apq8053
Subscribe
Apq8096au
Subscribe
Ar8151
Subscribe
Mdm9206
Subscribe
Mdm9250
Subscribe
Mdm9650
Subscribe
Mdm9655
Subscribe
Msm8909w
Subscribe
Msm8917
Subscribe
Msm8920
Subscribe
Msm8937
Subscribe
Msm8940
Subscribe
Msm8953
Subscribe
Msm8996au
Subscribe
Pm215
Subscribe
Pm439
Subscribe
Pm660
Subscribe
Pm660a
Subscribe
Pm660l
Subscribe
Pm8004
Subscribe
Pm8005
Subscribe
Pm855a
Subscribe
Pm8909
Subscribe
Pm8916
Subscribe
Pm8937
Subscribe
Pm8940
Subscribe
Pm8953
Subscribe
Pm8996
Subscribe
Pm8998
Subscribe
Pmd9607
Subscribe
Pmd9655
Subscribe
Pmi632
Subscribe
Pmi8937
Subscribe
Pmi8940
Subscribe
Pmi8952
Subscribe
Pmi8994
Subscribe
Pmi8996
Subscribe
Pmi8998
Subscribe
Pmk8001
Subscribe
Pmm855au
Subscribe
Pmm8996au
Subscribe
Pmx20
Subscribe
Qat3514
Subscribe
Qat3522
Subscribe
Qat3550
Subscribe
Qbt1000
Subscribe
Qbt1500
Subscribe
Qca6174a
Subscribe
Qca6310
Subscribe
Qca6320
Subscribe
Qca6564a
Subscribe
Qca6564au
Subscribe
Qca6574a
Subscribe
Qca6574au
Subscribe
Qca6595
Subscribe
Qca6595au
Subscribe
Qca9367
Subscribe
Qca9377
Subscribe
Qca9379
Subscribe
Qcc1110
Subscribe
Qet4100
Subscribe
Qet4101
Subscribe
Qet4200aq
Subscribe
Qet5100
Subscribe
Qfe2080fc
Subscribe
Qfe2081fc
Subscribe
Qfe2082fc
Subscribe
Qfe2101
Subscribe
Qfe2550
Subscribe
Qfe3100
Subscribe
Qfe3440fc
Subscribe
Qfe4301
Subscribe
Qfe4302
Subscribe
Qfe4303
Subscribe
Qfe4305
Subscribe
Qfe4308
Subscribe
Qfe4309
Subscribe
Qfe4320
Subscribe
Qfe4373fc
Subscribe
Qfe4455fc
Subscribe
Qfe4465fc
Subscribe
Qln1021aq
Subscribe
Qln1030
Subscribe
Qln1031
Subscribe
Qln1035bd
Subscribe
Qln1036aq
Subscribe
Qpa4340
Subscribe
Qpa4360
Subscribe
Qpa5373
Subscribe
Qpa5460
Subscribe
Qsw8573
Subscribe
Qtc800h
Subscribe
Qtc800s
Subscribe
Qtc800t
Subscribe
Qtc801s
Subscribe
Qualcomm215
Subscribe
Rgr7640au
Subscribe
Rsw8577
Subscribe
Sd439
Subscribe
Sd450
Subscribe
Sd636
Subscribe
Sd660
Subscribe
Sd710
Subscribe
Sd712
Subscribe
Sd820
Subscribe
Sd821
Subscribe
Sd835
Subscribe
Sdm630
Subscribe
Sdm830
Subscribe
Sdr051
Subscribe
Sdr052
Subscribe
Sdr660
Subscribe
Sdw2500
Subscribe
Sdw3100
Subscribe
Sdx20
Subscribe
Sdx20m
Subscribe
Sdx50m
Subscribe
Smb1350
Subscribe
Smb1351
Subscribe
Smb1355
Subscribe
Smb1357
Subscribe
Smb1358
Subscribe
Smb1360
Subscribe
Smb1380
Subscribe
Smb231
Subscribe
Wcd9326
Subscribe
Wcd9330
Subscribe
Wcd9335
Subscribe
Wcd9340
Subscribe
Wcd9341
Subscribe
Wcn3615
Subscribe
Wcn3620
Subscribe
Wcn3660b
Subscribe
Wcn3680
Subscribe
Wcn3680b
Subscribe
Wcn3980
Subscribe
Wcn3990
Subscribe
Wgr7640
Subscribe
Wsa8810
Subscribe
Wsa8815
Subscribe
Wtr2955
Subscribe
Wtr2965
Subscribe
Wtr3905
Subscribe
Wtr3925
Subscribe
Wtr3950
Subscribe
Wtr4905
Subscribe
Wtr5975
Subscribe
|
Configuration 1 [-]
|
No data.
No data.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-3537 | A process can potentially cause a buffer overflow in the display service allowing privilege escalation by executing code as that service in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: qualcomm
Published:
Updated: 2024-08-04T11:28:13.647Z
Reserved: 2020-03-31T00:00:00
Link: CVE-2020-11183
No data.
Status : Modified
Published: 2021-01-21T10:15:14.260
Modified: 2024-11-21T04:57:07.887
Link: CVE-2020-11183
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD