Out of bound write in logger due to prefix size is not validated while prepended to logging string in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Conclusion & alert: CVE-2020-11294 is rated Low Risk (26.8/100): CVSS Medium severity, with low exploitation likelihood (EPSS 0.04%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-03-30 | 0.07% | 0.04% | -0.03% |
| 2 | 2025-03-29 | 0.04% | 0.07% | +0.03% |
| 3 | 2023-03-07 | — | 0.04% | — |
Full EPSS history (7 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 5.9 | 3.1 | MEDIUM |
|
2.5 | 3.4 | [email protected] |
| 7.8 | 3.1 | HIGH |
|
1.8 | 5.9 | [email protected] |
| 4.6 | 2.0 | MEDIUM |
|
3.9 | 6.4 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| qualcomm | ar8035_firmware | — | cpe:2.3:o:qualcomm:ar8035_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm215_firmware | — | cpe:2.3:o:qualcomm:pm215_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm3003a_firmware | — | cpe:2.3:o:qualcomm:pm3003a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm6125_firmware | — | cpe:2.3:o:qualcomm:pm6125_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm6150_firmware | — | cpe:2.3:o:qualcomm:pm6150_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm6150a_firmware | — | cpe:2.3:o:qualcomm:pm6150a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm6150l_firmware | — | cpe:2.3:o:qualcomm:pm6150l_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm6350_firmware | — | cpe:2.3:o:qualcomm:pm6350_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm640a_firmware | — | cpe:2.3:o:qualcomm:pm640a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm640l_firmware | — | cpe:2.3:o:qualcomm:pm640l_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm640p_firmware | — | cpe:2.3:o:qualcomm:pm640p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm670_firmware | — | cpe:2.3:o:qualcomm:pm670_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm670l_firmware | — | cpe:2.3:o:qualcomm:pm670l_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm7150a_firmware | — | cpe:2.3:o:qualcomm:pm7150a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm7150l_firmware | — | cpe:2.3:o:qualcomm:pm7150l_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm7250_firmware | — | cpe:2.3:o:qualcomm:pm7250_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm7250b_firmware | — | cpe:2.3:o:qualcomm:pm7250b_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8005_firmware | — | cpe:2.3:o:qualcomm:pm8005_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8008_firmware | — | cpe:2.3:o:qualcomm:pm8008_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8009_firmware | — | cpe:2.3:o:qualcomm:pm8009_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8150a_firmware | — | cpe:2.3:o:qualcomm:pm8150a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8150b_firmware | — | cpe:2.3:o:qualcomm:pm8150b_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8150c_firmware | — | cpe:2.3:o:qualcomm:pm8150c_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8150l_firmware | — | cpe:2.3:o:qualcomm:pm8150l_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8250_firmware | — | cpe:2.3:o:qualcomm:pm8250_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8350_firmware | — | cpe:2.3:o:qualcomm:pm8350_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8350b_firmware | — | cpe:2.3:o:qualcomm:pm8350b_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8350bh_firmware | — | cpe:2.3:o:qualcomm:pm8350bh_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8350c_firmware | — | cpe:2.3:o:qualcomm:pm8350c_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm855_firmware | — | cpe:2.3:o:qualcomm:pm855_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm855b_firmware | — | cpe:2.3:o:qualcomm:pm855b_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm855l_firmware | — | cpe:2.3:o:qualcomm:pm855l_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8909_firmware | — | cpe:2.3:o:qualcomm:pm8909_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pm8998_firmware | — | cpe:2.3:o:qualcomm:pm8998_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmi632_firmware | — | cpe:2.3:o:qualcomm:pmi632_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmi8998_firmware | — | cpe:2.3:o:qualcomm:pmi8998_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmk8002_firmware | — | cpe:2.3:o:qualcomm:pmk8002_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmk8003_firmware | — | cpe:2.3:o:qualcomm:pmk8003_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmk8350_firmware | — | cpe:2.3:o:qualcomm:pmk8350_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmm6155au_firmware | — | cpe:2.3:o:qualcomm:pmm6155au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmm8155au_firmware | — | cpe:2.3:o:qualcomm:pmm8155au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmm8195au_firmware | — | cpe:2.3:o:qualcomm:pmm8195au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmm855au_firmware | — | cpe:2.3:o:qualcomm:pmm855au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmr525_firmware | — | cpe:2.3:o:qualcomm:pmr525_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmr735a_firmware | — | cpe:2.3:o:qualcomm:pmr735a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmr735b_firmware | — | cpe:2.3:o:qualcomm:pmr735b_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmw3100_firmware | — | cpe:2.3:o:qualcomm:pmw3100_firmware:-:*:*:*:*:*:*:* |
| qualcomm | pmx55_firmware | — | cpe:2.3:o:qualcomm:pmx55_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat3516_firmware | — | cpe:2.3:o:qualcomm:qat3516_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat3518_firmware | — | cpe:2.3:o:qualcomm:qat3518_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat3519_firmware | — | cpe:2.3:o:qualcomm:qat3519_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat3522_firmware | — | cpe:2.3:o:qualcomm:qat3522_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat3550_firmware | — | cpe:2.3:o:qualcomm:qat3550_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat3555_firmware | — | cpe:2.3:o:qualcomm:qat3555_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat5515_firmware | — | cpe:2.3:o:qualcomm:qat5515_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat5516_firmware | — | cpe:2.3:o:qualcomm:qat5516_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat5522_firmware | — | cpe:2.3:o:qualcomm:qat5522_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat5533_firmware | — | cpe:2.3:o:qualcomm:qat5533_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qat5568_firmware | — | cpe:2.3:o:qualcomm:qat5568_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qbt1500_firmware | — | cpe:2.3:o:qualcomm:qbt1500_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qbt2000_firmware | — | cpe:2.3:o:qualcomm:qbt2000_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6175a_firmware | — | cpe:2.3:o:qualcomm:qca6175a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6390_firmware | — | cpe:2.3:o:qualcomm:qca6390_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6391_firmware | — | cpe:2.3:o:qualcomm:qca6391_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6421_firmware | — | cpe:2.3:o:qualcomm:qca6421_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6426_firmware | — | cpe:2.3:o:qualcomm:qca6426_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6431_firmware | — | cpe:2.3:o:qualcomm:qca6431_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6436_firmware | — | cpe:2.3:o:qualcomm:qca6436_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6564a_firmware | — | cpe:2.3:o:qualcomm:qca6564a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6564au_firmware | — | cpe:2.3:o:qualcomm:qca6564au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6574_firmware | — | cpe:2.3:o:qualcomm:qca6574_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6574a_firmware | — | cpe:2.3:o:qualcomm:qca6574a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6574au_firmware | — | cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6584au_firmware | — | cpe:2.3:o:qualcomm:qca6584au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6595_firmware | — | cpe:2.3:o:qualcomm:qca6595_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6595au_firmware | — | cpe:2.3:o:qualcomm:qca6595au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6696_firmware | — | cpe:2.3:o:qualcomm:qca6696_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8337_firmware | — | cpe:2.3:o:qualcomm:qca8337_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcm4290_firmware | — | cpe:2.3:o:qualcomm:qcm4290_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcm6125_firmware | — | cpe:2.3:o:qualcomm:qcm6125_firmware:-:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://www.qualcomm.com/company/product-security/bulletins/may-2021-bulletin | Vendor Advisory |