mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-29 01:31:01 +00:00
19 lines
1.5 KiB
Markdown
19 lines
1.5 KiB
Markdown
### [CVE-2020-3688](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-3688)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Possible buffer overflow while parsing mp4 clip with corrupted sample atoms due to improper validation of index in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, Kamorta, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCA6574AU, QCM2150, QCS405, QCS605, QM215, Rennell, SA6155P, Saipan, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://www.qualcomm.com/company/product-security/bulletins/july-2020-bulletin
|
|
- https://www.qualcomm.com/company/product-security/bulletins/july-2020-bulletin
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|