CVE-2020-3671
Severity CVSS v4.0:
Pending analysis
Type:
CWE-416
Use After Free
Publication date:
30/07/2020
Last modified:
30/07/2020
Description
Use-after-free issue could occur due to dangling pointer when generating a frame buffer in OpenGL ES in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8009, Nicobar, QCM2150, QCS405, Saipan, SDM845, SM8150, SM8250, SXR2130
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:qualcomm:apq8009_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:qualcomm:apq8009:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:qualcomm:nicobar_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:qualcomm:nicobar:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:qualcomm:qcm2150_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:qualcomm:qcm2150:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:qualcomm:qcs405_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:qualcomm:qcs405:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:qualcomm:saipan_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:qualcomm:saipan:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:qualcomm:sdm845_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:qualcomm:sdm845:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:qualcomm:sm8150_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:qualcomm:sm8150:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:qualcomm:sm8250_firmware:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



