CVE-2020-11151
MEDIUMQualcomm PM3003A and related - Use-After-Free via Race Condition in Video IOCTL
Title source: llmDescription
Race condition occurs while calling user space ioctl from two different threads can results to use after free issue in video in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
References (2)
Core 2
Core References
Broken Link x_refsource_confirm
https://www.qualcomm.com/company/product-security/bulletins/december-2020-bulletin
Patch, Vendor Advisory
https://www.qualcomm.com/company/product-security/bulletins/december-2020-security-bulletin
Scores
CVSS v3
6.4
EPSS
0.0003
EPSS Percentile
9.3%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-362
CWE-416
Status
published
Products (50)
qualcomm/pm3003a
qualcomm/pm6125
qualcomm/pm6150
qualcomm/pm6150a
qualcomm/pm6150l
qualcomm/pm6350
qualcomm/pm640a
qualcomm/pm640l
qualcomm/pm640p
qualcomm/pm7150a
... and 40 more
Published
Jan 21, 2021
Tracked Since
Feb 18, 2026