Files
CVEs-PoC/2020/CVE-2020-3632.md
T
2024-06-18 02:51:15 +02:00

18 lines
924 B
Markdown

### [CVE-2020-3632](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-3632)
![](https://img.shields.io/static/v1?label=Product&message=Snapdragon%20Compute%2C%20Snapdragon%20Mobile&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Improper%20Validation%20of%20Array%20Index%20in%20MHI%20Ring%20Validation&color=brighgreen)
### Description
u'Incorrect validation of ring context fetched from host memory can lead to memory overflow' in Snapdragon Compute, Snapdragon Mobile in QSM8350, SC7180, SDX55, SDX55M, SM6150, SM6250, SM6250P, SM7125, SM7150, SM7150P, SM7250, SM7250P, SM8150, SM8150P, SM8250, SM8350, SM8350P, SXR2130, SXR2130P
### POC
#### Reference
- https://www.qualcomm.com/company/product-security/bulletins/november-2020-bulletin
#### Github
- https://github.com/TinyNiko/android_bulletin_notes