Heap Overflow Vulnerability in Snapdragon Platforms

Heap Overflow Vulnerability in Snapdragon Platforms

CVE-2020-11176 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

While processing server certificate from IPSec server, certificate validation for subject alternative name API can cause heap overflow which can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile

Learn more about our Cis Benchmark Audit For Server Software.