← Vulnerability feed

Vulnerability record · CVE-2020-11145 · published 21 January 2021

CVE-2020-11145: Qualcomm apq8009 divide by zero vulnerability

Qualcomm · Apq8009

Divide by zero issue can happen while updating delta extension header due to improper validation of master SN and extension header SN in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

7.5 CVSS 3.1 High EPSS 0.78% · top 45.7% CWE-369 · Divide by zero
7.5CVSS 3.1 base score, v2 5.0
0.78%EPSS exploitation probability, 30 days
NoNot in CISA KEV
150Affected product versions listed by NVD
3References
17 Jun 2026Last modified by NVD

Description

Divide by zero issue can happen while updating delta extension header due to improper validation of master SN and extension header SN in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected products

150 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2020-11145 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2020-11283Qualcomm apq8009 out-of-bounds write vulnerabilityA buffer overflow can occur when playing an MKV clip due to lack of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity,…EPSS 0.71%9.8CVE-2020-3686Qualcomm apq8009 classic buffer overflow vulnerabilityPossible memory out of bound issue during music playback when an incorrect bit stream content is copied into array without checking the length of arr…EPSS 1.2%9.8CVE-2020-3691Qualcomm apq8009 vulnerabilityPossible out of bound memory access in audio due to integer underflow while processing modified contents in Snapdragon Auto, Snapdragon Compute, Snap…EPSS 1.1%9.8CVE-2020-11197Qualcomm apq8009 integer overflow vulnerabilityPossible integer overflow can occur when stream info update is called when total number of streams detected are zero while parsing TS clip with inval…EPSS 0.91%9.8CVE-2020-11216Qualcomm apq8009 out-of-bounds read vulnerabilityBuffer over read can happen in video driver when playing clip with atomsize having value UINT32_MAX in Snapdragon Auto, Snapdragon Compute, Snapdrago…EPSS 0.91%9.8CVE-2020-11167Qualcomm apq8009w integer overflow vulnerabilityMemory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected in Snapdragon Auto, Snapdragon …EPSS 1.2%9.8CVE-2020-11212Qualcomm apq8009 out-of-bounds read vulnerabilityOut of bounds reads while parsing NAN beacons attributes and OUIs due to improper length of field check in Snapdragon Auto, Snapdragon Compute, Snapd…EPSS 0.87%9.8CVE-2020-11213Qualcomm apq8009 out-of-bounds read vulnerabilityOut of bound reads might occur in while processing Service descriptor due to improper validation of length of fields in Snapdragon Auto, Snapdragon C…EPSS 0.87%

Source: NIST National Vulnerability Database (record CVE-2020-11145), CISA KEV, FIRST EPSS (scores of 2026-10-03). This page is refreshed as NVD updates the record.