CVE-2020-3702

⚪ Do wiadomości

Specjalnie skonstruowany ruch sieciowy w urządzeniach Snapdragon może prowadzić do ujawnienia informacji.

CVSS
6.5
EPSS
0.3%
Exploit
none
Vendor
qualcomm
Opis źródłowy (NVD)

u'Specifically timed and handcrafted traffic can cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure over the air for a discrete set of traffic' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8053, IPQ4019, IPQ8064, MSM8909W, MSM8996AU, QCA9531, QCN5502, QCS405, SDX20, SM6150, SM7150

brak Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS6.5
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.3%
Opublikowano (NVD)2020-09-08 10:15:16 UTC
Ostatnia modyfikacja (NVD)2026-10-08 21:17:30 UTC
Referencje