CVE-2020-11217

HIGH

Qualcomm PM3003A and related - Use-After-Free in Audio Driver Speaker Protection Parameter Handling

Title source: llm
STIX 2.1

Description

A possible double free or invalid memory access in audio driver while reading Speaker Protection parameters in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

Scores

CVSS v3 7.8
EPSS 0.0004
EPSS Percentile 13.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-415
Status published
Products (50)
qualcomm/pm3003a
qualcomm/pm4125
qualcomm/pm6125
qualcomm/pm6150a
qualcomm/pm6150l
qualcomm/pm6350
qualcomm/pm660
qualcomm/pm660a
qualcomm/pm660l
qualcomm/pm7150a
... and 40 more
Published Jan 21, 2021
Tracked Since Feb 18, 2026