← Vulnerability feed

Vulnerability record · CVE-2020-11185 · published 21 January 2021

CVE-2020-11185: Qualcomm ar9380 out-of-bounds write vulnerability

Qualcomm · Ar9380

Out of bound issue in WLAN driver while processing vdev responses from firmware due to lack of validation of data received from firmware in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking

7.8 CVSS 3.1 High EPSS 0.22% · top 88.7% CWE-787 · Out-of-bounds write
7.8CVSS 3.1 base score, v2 7.2
0.22%EPSS exploitation probability, 30 days
NoNot in CISA KEV
150Affected product versions listed by NVD
3References
17 Jun 2026Last modified by NVD

Description

Out of bound issue in WLAN driver while processing vdev responses from firmware due to lack of validation of data received from firmware in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

150 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2020-11185 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2020-11212Qualcomm apq8009 out-of-bounds read vulnerabilityOut of bounds reads while parsing NAN beacons attributes and OUIs due to improper length of field check in Snapdragon Auto, Snapdragon Compute, Snapd…EPSS 0.87%9.8CVE-2020-11225Qualcomm apq8064au classic buffer overflow vulnerabilityOut of bound access in WLAN driver due to lack of validation of array length before copying into array in Snapdragon Auto, Snapdragon Compute, Snapdr…EPSS 1.1%9.8CVE-2020-11213Qualcomm apq8009 out-of-bounds read vulnerabilityOut of bound reads might occur in while processing Service descriptor due to improper validation of length of fields in Snapdragon Auto, Snapdragon C…EPSS 0.87%9.1CVE-2020-11215Qualcomm aqt1000 out-of-bounds read vulnerabilityAn out of bounds read can happen when processing VSA attribute due to improper minimum required length check in Snapdragon Auto, Snapdragon Compute, …EPSS 0.88%7.5CVE-2020-11287Qualcomm aqt1000 observable discrepancy vulnerabilityAllowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to information disclosure. in Snapdragon …EPSS 0.69%7.5CVE-2020-11214Qualcomm aqt1000 out-of-bounds read vulnerabilityBuffer over-read while processing NDL attribute if attribute length is larger than expected and then FW is treating it as more number of immutable sc…EPSS 0.78%8.8CVE-2026-86950Apple ipados out-of-bounds write vulnerabilityAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, …KEVEPSS 1.2%8.8CVE-2026-53266Linux kernel ebtables SNAT out-of-bounds write in ARP rewriteThe ebtables SNAT target rewrites the ARP sender hardware address via skb_store_bits() without first making that range writable. When the ARP SHA byt…KEVEPSS 0.83%analysed

Source: NIST National Vulnerability Database (record CVE-2020-11185), CISA KEV, FIRST EPSS (scores of 2026-10-05). This page is refreshed as NVD updates the record.