Vulnerabilities > CVE-2020-35553 - Improper Restriction of Power Consumption vulnerability in Google Android 10.0/11.0

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
google
CWE-920

Summary

An issue was discovered on Samsung mobile devices with Q(10.0) and R(11.0) (Qualcomm SM8250 chipsets) software. They allows attackers to cause a denial of service (unlock failure) by triggering a power-shortage incident that causes a false-positive attack detection. The Samsung ID is SVE-2020-19678 (December 2020).

Vulnerable Configurations

Part Description Count
OS
Google
2
Hardware
Qualcomm
1

Common Weakness Enumeration (CWE)