Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-11256 | Memory corruption due to lack of check of validation of pointer to buffer passed to trustzone in Snapdragon Wired Infra… | High (8.8) | 2021-06-09 | Environment Specific |
| CVE-2020-11250 | Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute… | High (7.0) | 2021-06-09 | Environment Specific |
| CVE-2020-11241 | Out of bound read will happen if EAPOL Key length is less than expected while processing NAN shared key descriptor attr… | High (7.5) | 2021-06-09 | Environment Specific |
| CVE-2020-11240 | Memory corruption due to ioctl command size was incorrectly set to the size of a pointer and not enough storage is allo… | High (7.8) | 2021-06-09 | Environment Specific |
| CVE-2020-11239 | Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleane… | High (7.8) | 2021-06-09 | Environment Specific |