#VU112420 Integer overflow in Qualcomm products - CVE-2020-11184

 

#VU112420 Integer overflow in Qualcomm products - CVE-2020-11184

Published: July 7, 2025


Vulnerability identifier: #VU112420
Vulnerability risk: Medium
CVSSv4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2020-11184
CWE-ID: CWE-190
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vulnerable software:
QCM4290
QCS4290
QSM8350
SA6145P
SA6155
SA8155
SA8155P
SDX55M
SM4250
SM4250P
SM6115
SM6115P
SM6125
SM6250
SM6350
SM7125
SM7225
SM7250
SM7250P
SM8150P
SM8350
SM8350P
SXR2130P
QM215
SA6155P
SDX55
SM8150
SM8250
SXR2130
Software vendor:
Qualcomm

Description

The vulnerability allows a remote attacker to read and manipulate data.

The vulnerability exists due to improper input validation in Video. A remote attacker can read and manipulate data.


Remediation

Install security update from vendor's website.

External links