// For flags

CVE-2020-3700

 

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Possible out of bounds read due to a missing bounds check and could lead to local information disclosure in the wifi driver with no additional execution privileges needed in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8053, APQ8096AU, IPQ4019, IPQ8064, IPQ8074, MDM9607, MSM8909W, MSM8996AU, QCA6574AU, QCA9531, QCA9558, QCA9980, SC8180X, SDM439, SDX55, SM8150, SM8250, SXR2130

Una posible lectura fuera de límites debido a una falta de comprobación de límites y podría conllevar a una divulgación de información local en el controlador wifi sin los privilegios de ejecución adicionales necesarios en los productos Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking en versiones APQ8053, APQ8096AU, IPQ4019, IPQ8064, IPQ8074, MDM9607, MSM8909W, MSM8996AU, QCA6574AU, QCA9531, QCA9558, QCA9980, SC8180X, SDM439, SDX55, SM8150, SM8250, SXR2130

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2019-12-17 CVE Reserved
  • 2020-07-30 CVE Published
  • 2024-08-04 CVE Updated
  • 2024-09-08 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-125: Out-of-bounds Read
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Qualcomm
Search vendor "Qualcomm"
Apq8053 Firmware
Search vendor "Qualcomm" for product "Apq8053 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Apq8053
Search vendor "Qualcomm" for product "Apq8053"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Apq8096au Firmware
Search vendor "Qualcomm" for product "Apq8096au Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Apq8096au
Search vendor "Qualcomm" for product "Apq8096au"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Ipq4019 Firmware
Search vendor "Qualcomm" for product "Ipq4019 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Ipq4019
Search vendor "Qualcomm" for product "Ipq4019"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Ipq8064 Firmware
Search vendor "Qualcomm" for product "Ipq8064 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Ipq8064
Search vendor "Qualcomm" for product "Ipq8064"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Ipq8074 Firmware
Search vendor "Qualcomm" for product "Ipq8074 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Ipq8074
Search vendor "Qualcomm" for product "Ipq8074"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Mdm9607 Firmware
Search vendor "Qualcomm" for product "Mdm9607 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Mdm9607
Search vendor "Qualcomm" for product "Mdm9607"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Msm8909w Firmware
Search vendor "Qualcomm" for product "Msm8909w Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Msm8909w
Search vendor "Qualcomm" for product "Msm8909w"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Msm8996au Firmware
Search vendor "Qualcomm" for product "Msm8996au Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Msm8996au
Search vendor "Qualcomm" for product "Msm8996au"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Qca6574au Firmware
Search vendor "Qualcomm" for product "Qca6574au Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Qca6574au
Search vendor "Qualcomm" for product "Qca6574au"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Qca9531 Firmware
Search vendor "Qualcomm" for product "Qca9531 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Qca9531
Search vendor "Qualcomm" for product "Qca9531"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Qca9558 Firmware
Search vendor "Qualcomm" for product "Qca9558 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Qca9558
Search vendor "Qualcomm" for product "Qca9558"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Qca9980 Firmware
Search vendor "Qualcomm" for product "Qca9980 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Qca9980
Search vendor "Qualcomm" for product "Qca9980"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Sc8180x Firmware
Search vendor "Qualcomm" for product "Sc8180x Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Sc8180x
Search vendor "Qualcomm" for product "Sc8180x"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Sdm439 Firmware
Search vendor "Qualcomm" for product "Sdm439 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Sdm439
Search vendor "Qualcomm" for product "Sdm439"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Sdx55 Firmware
Search vendor "Qualcomm" for product "Sdx55 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Sdx55
Search vendor "Qualcomm" for product "Sdx55"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Sm8150 Firmware
Search vendor "Qualcomm" for product "Sm8150 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Sm8150
Search vendor "Qualcomm" for product "Sm8150"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Sm8250 Firmware
Search vendor "Qualcomm" for product "Sm8250 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Sm8250
Search vendor "Qualcomm" for product "Sm8250"
--
Safe
Qualcomm
Search vendor "Qualcomm"
Sxr2130 Firmware
Search vendor "Qualcomm" for product "Sxr2130 Firmware"
--
Affected
in Qualcomm
Search vendor "Qualcomm"
Sxr2130
Search vendor "Qualcomm" for product "Sxr2130"
--
Safe