Bitra
Vendor:
First CVE: Sep 8, 2020 · Active for 5 years
38
Total CVEs
More Total CVEs than 97% of tracked products
38.0
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
7.7
Avg CVSS
Higher Avg CVSS than 62% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Bitra over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 8, 2020
5 years ago
Most Recent CVE
Nov 2, 2020
2,090 days ago
CVE Severity & Scoring
Bitra38 CVEs
11%
79%
11%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local31 (81.6%)
Network7 (18.4%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low37 (97.4%)
High1 (2.6%)
Unknown0 (0.0%)
User Interaction
None37 (97.4%)
Unknown0 (0.0%)
Required1 (2.6%)
Privileges Required
Low30 (78.9%)
High0 (0.0%)
None8 (21.1%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (38 CVEs).
38 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-3703CRITICAL u'Buffer over-read issue in Bluetooth peripheral firmware due to lack of check for invalid opcode and length of opcode received from central device(This CVE is equivalent to Link L | Nov 2, 2020 | 9.8 | 30 | NO | NO |
CVE-2020-3673CRITICAL u'Buffer overflow can happen as part of SIP message packet processing while storing values in array due to lack of check to validate the index length' in Snapdragon Auto, Snapdrago | Nov 2, 2020 | 9.8 | 30 | NO | NO |
CVE-2020-3654CRITICAL u'Buffer overflow occurs while processing SIP message packet due to lack of check of index validation before copying into it' in Snapdragon Auto, Snapdragon Compute, Snapdragon Con | Nov 2, 2020 | 9.8 | 28 | NO | NO |
CVE-2020-3638HIGH u'An Unaligned address or size can propagate to the database due to improper page permissions and can lead to improper access control' in Snapdragon Auto, Snapdragon Compute, Snapd | Nov 2, 2020 | 7.8 | 25 | NO | NO |
CVE-2020-3629HIGH u'Stack out of bound issue occurs when making query to DSP capabilities due to wrong assumption was made on determining the buffer size for the DSP attributes' in Snapdragon Auto, | Sep 8, 2020 | 7.8 | 25 | NO | NO |
CVE-2019-13994HIGH u'Lack of check that the current received data fragment size of a particular packet that are read from shared memory are less than the actual packet size can lead to memory corrupt | Sep 8, 2020 | 7.8 | 25 | NO | NO |
CVE-2019-13992HIGH u'Out of bound memory access if stack push and pop operation are performed without doing a bound check on stack top' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity | Sep 8, 2020 | 7.8 | 25 | NO | NO |
CVE-2020-3694HIGH u'Use out of range pointer issue can occur due to incorrect buffer range check during the execution of qseecom' in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile, Snapdrago | Nov 2, 2020 | 7.8 | 24 | NO | NO |
CVE-2020-3693HIGH u'Use out of range pointer issue can occur due to incorrect buffer range check during the execution of qseecom.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Sn | Nov 2, 2020 | 7.8 | 24 | NO | NO |
CVE-2020-3684HIGH u'QSEE reads the access permission policy for the SMEM TOC partition from the SMEM TOC contents populated by XBL Loader and applies them without validation' in Snapdragon Auto, Sna | Nov 2, 2020 | 7.8 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (38 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (38 CVEs).
Media Mentions
Signals from CVEs in this product scope (38 CVEs).
Top CNAs Publishing CVEs For Bitra
Top CWEs
Versions
No cataloged versions.