|
209921
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009w_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware apq8098_firmware mdm9206_firmware mdm9650_firmware msm8909w_firmware msm8953_firmw…
|
u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Sna…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-11168
|
2024-11-21 13:57 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209922
|
9.8 |
CRITICAL
Network
|
qualcomm
|
ipq4019_firmware ipq6018_firmware ipq8064_firmware ipq8074_firmware qca9531_firmware qca9980_firmware
|
u'fscanf reads a string from a file and stores its contents on a statically allocated stack memory which leads to stack overflow' in Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ6018…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-11172
|
2024-11-21 13:57 |
2020-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209923
|
7.8 |
HIGH
Local
|
qualcomm
|
agatti_firmware apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware bitra_firmware ipq4019_firmware ipq5018_firmware ipq6018_firmware …
|
u'Array index underflow issue in adsp driver due to improper check of channel id before used as array index.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,…
|
CWE-129
Improper Validation of Array Index
|
CVE-2020-11174
|
2024-11-21 13:57 |
2020-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209924
|
7.0 |
HIGH
Local
|
qualcomm
|
agatti_firmware apq8053_firmware bitra_firmware ipq4019_firmware ipq5018_firmware ipq6018_firmware ipq8064_firmware ipq8074_firmware kamorta_firmware mdm9607_firmware ms…
|
u'Two threads running simultaneously from user space can lead to race condition in fastRPC driver' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2020-11173
|
2024-11-21 13:57 |
2020-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209925
|
9.1 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8053_firmware qca6390_firmware qcn7605_firmware qcn7606_firmware sa415m_firmware sa515m_firmware sa6155p_firmware sa8155p_firmware sc8180x_firmware s…
|
u'Buffer over-read while processing received L2CAP packet due to lack of integer overflow check' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Conne…
|
CWE-125 CWE-190
Out-of-bounds Read Integer Overflow or Wraparound
|
CVE-2020-11169
|
2024-11-21 13:57 |
2020-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209926
|
6.7 |
MEDIUM
Local
|
intel
|
bmc_firmware
|
NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30 and all DGX-2 with BMC firmware versions prior to 1.06.06, contains a vulnerability in the AMI BMC firmware in which software…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2020-11488
|
2024-11-21 13:57 |
2020-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209927
|
7.5 |
HIGH
Network
|
intel
|
bmc_firmware
|
NVIDIA DGX servers, DGX-1 with BMC firmware versions prior to 3.38.30. DGX-2 with BMC firmware versions prior to 1.06.06 and all DGX A100 Servers with all BMC firmware versions, contains a vulnerabil…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-11487
|
2024-11-21 13:57 |
2020-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209928
|
9.8 |
CRITICAL
Network
|
intel
|
bmc_firmware
|
NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30, contain a vulnerability in the AMI BMC firmware in which software allows an attacker to upload or transfer files that can be…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-11486
|
2024-11-21 13:57 |
2020-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209929
|
8.8 |
HIGH
Network
|
intel
|
bmc_firmware
|
NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30, contains a Cross-Site Request Forgery (CSRF) vulnerability in the AMI BMC firmware in which the web application does not suf…
|
CWE-352
Origin Validation Error
|
CVE-2020-11485
|
2024-11-21 13:57 |
2020-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209930
|
4.9 |
MEDIUM
Network
|
intel
|
bmc_firmware
|
NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30, contains a vulnerability in the AMI BMC firmware in which an attacker with administrative privileges can obtain the hash of …
|
NVD-CWE-noinfo
|
CVE-2020-11484
|
2024-11-21 13:57 |
2020-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|