UBUNTU-CVE-2020-3702
Dashboard / Vulnerabilities / UBUNTU-CVE-2020-3702
UBUNTU-CVE-2020-3702
Summary:
Details: u'Specifically timed and handcrafted traffic can cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure over the air for a discrete set of traffic' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8053, IPQ4019, IPQ8064, MSM8909W, MSM8996AU, QCA9531, QCN5502, QCS405, SDX20, SM6150, SM7150
References: https://ubuntu.com/security/CVE-2020-3702, https://lore.kernel.org/linux-wireless/CABvG-CVvPF++0vuGzCrBj8+s=Bcx1GwWfiW1_Somu_GVncTAcQ@mail.gmail.com/, https://lore.kernel.org/stable/20210818084859.vcs4vs3yd6zetmyt@pali/t/#mf8b430d4f19f1b939a29b6c5098fdc514fd1a928, https://www.arista.com/en/support/advisories-notices/security-advisories/11998-security-advisory-58, https://ubuntu.com/security/notices/USN-5113-1, https://ubuntu.com/security/notices/USN-5114-1, https://ubuntu.com/security/notices/USN-5115-1, https://ubuntu.com/security/notices/USN-5116-1, https://ubuntu.com/security/notices/USN-5116-2, https://ubuntu.com/security/notices/USN-5361-1, https://www.cve.org/CVERecord?id=CVE-2020-3702
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
