CVE Feed

    Dashboard / CVE / CVE-2020-3702

    CVE-2020-3702

    u'Specifically timed and handcrafted traffic can cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure over the air for a discrete set of traffic' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8053, IPQ4019, IPQ8064, MSM8909W, MSM8996AU, QCA9531, QCN5502, QCS405, SDX20, SM6150, SM7150

    Published:Aug 5, 2020
    Last Modified:Nov 21, 2024
    EPS:Sep 8, 2020
    EPSS Score:0.0024
    CVSS Score:6.5

    Affected Products

    Vendor
    Arista
    Product
    Access Point
    Vendor
    Arista
    Product
    Av2
    Vendor
    Arista
    Product
    C-75
    Vendor
    Arista
    Product
    C75-e
    Vendor
    Arista
    Product
    O-90
    Vendor
    Arista
    Product
    O90e
    Vendor
    Arista
    Product
    W-68
    Vendor
    Debian
    Product
    Debian Linux
    Vendor
    Qualcomm
    Product
    Apq8053
    Vendor
    Qualcomm
    Product
    Apq8053 Firmware
    Vendor
    Qualcomm
    Product
    Ipq4019
    Vendor
    Qualcomm
    Product
    Ipq4019 Firmware
    Vendor
    Qualcomm
    Product
    Ipq8064
    Vendor
    Qualcomm
    Product
    Ipq8064 Firmware
    Vendor
    Qualcomm
    Product
    Msm8909w
    Vendor
    Qualcomm
    Product
    Msm8909w Firmware
    Vendor
    Qualcomm
    Product
    Msm8996au
    Vendor
    Qualcomm
    Product
    Msm8996au Firmware
    Vendor
    Qualcomm
    Product
    Qca9531
    Vendor
    Qualcomm
    Product
    Qca9531 Firmware
    Vendor
    Qualcomm
    Product
    Qcn5502
    Vendor
    Qualcomm
    Product
    Qcn5502 Firmware
    Vendor
    Qualcomm
    Product
    Qcs405
    Vendor
    Qualcomm
    Product
    Qcs405 Firmware
    Vendor
    Qualcomm
    Product
    Sdx20
    Vendor
    Qualcomm
    Product
    Sdx20 Firmware
    Vendor
    Qualcomm
    Product
    Sm6150
    Vendor
    Qualcomm
    Product
    Sm6150 Firmware
    Vendor
    Qualcomm
    Product
    Sm7150
    Vendor
    Qualcomm
    Product
    Sm7150 Firmware

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High