Vulnerability
CVE-2020-11289
Component: GPU
Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Impact
Severity (Manufact.)
HIGH
Severity (NIST)
7.8
Severity (Android)
N/A
Chipsets
14
Devices
484
Affected Hardware
Name | Also known as | Manufacturer |
---|---|---|
MSM8208 | Snapdragon 208 | Qualcomm |
MSM8917 | Snapdragon 425 | Qualcomm |
MSM8920 | Snapdragon 427 | Qualcomm |
MSM8937 | Snapdragon 430 | Qualcomm |
MSM8940 | Snapdragon 435 | Qualcomm |
MSM8953 | Snapdragon 625 | Qualcomm |
SDM630 | Snapdragon 630 | Qualcomm |
SDM636 | Snapdragon 636 | Qualcomm |
SM6150 | Snapdragon 675 | Qualcomm |
SM8350 | Snapdragon 888 | Qualcomm |
14 of 14 row(s) shown.
Rows per page
Page 1 of 2
Information reliability
The information on this website is intended to provide information on the big picture of chipset security and measure trends within the industry. Our information is obtained from several vantage points, checked for consistency, and automatically cross-referenced. However, this process may not always yield reliable information. Do not use the information on a particular vulnerability, chipset or device to verify your individual exposure in cases where inaccuracies are inacceptable, for instance to assess risks if you are a Politically Exposed Person.
Timeline
Introduced (est):
Jan 1, 2014
Reported:
Unknown
Advisory Published:
May 3, 2021
CVE Published:
May 7, 2021
Android Patch Level:
May 2021