Vulnerability

CVE-2020-3670

Component: CELLULAR
u'Potential out of bounds read while processing downlink NAS transport message due to improper length check of Information Element(IEI) NAS message container' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in Agatti, APQ8053, APQ8096AU, APQ8098, Kamorta, MDM9150, MDM9205, MDM9206, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909W, MSM8917, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCM6125, QCS605, QCS610, QM215, Rennell, SA415M, Saipan, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130

Impact

Severity (Manufact.)

N/A

Severity (NIST)

9.1

Severity (Android)

N/A

Chipsets

24

Devices

1061

Affected Hardware

NameAlso known asManufacturer
MSM8905
Qualcomm 205
Qualcomm
QM215
Qualcomm 215
Qualcomm
MSM8917
Snapdragon 425
Qualcomm
MSM8940
Snapdragon 435
Qualcomm
SDM429
Snapdragon 429
Qualcomm
SDM439
Snapdragon 439
Qualcomm
SDM450
Snapdragon 450
Qualcomm
MSM8953
Snapdragon 625
Qualcomm
SDM630
Snapdragon 630
Qualcomm
SDM632
Snapdragon 632
Qualcomm
24 of 24 row(s) shown.

Rows per page

Page 1 of 3

Timeline

Introduced (est):
Apr 1, 2016
Reported:
Unknown
Advisory Published:
Oct 5, 2020
CVE Published:
Nov 2, 2020
Android Patch Level:
Oct 2020
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter