CVE-2020-11277
HIGHQualcomm PM3003A and related firmware - Race Condition in FastRPC Async Session Handling
Title source: llmDescription
Possible race condition during async fastrpc session after sending RPC message due to the fastrpc ctx gets free during async session in Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile
References (1)
Core 1
Core References
Vendor Advisory x_refsource_confirm
https://www.qualcomm.com/company/product-security/bulletins/february-2021-bulletin
Scores
CVSS v3
7.4
EPSS
0.0003
EPSS Percentile
8.0%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-362
CWE-416
Status
published
Products (50)
qualcomm/pm3003a_firmware
qualcomm/pm4250_firmware
qualcomm/pm6125_firmware
qualcomm/pm6150a_firmware
qualcomm/pm6150l_firmware
qualcomm/pm6350_firmware
qualcomm/pm7150a_firmware
qualcomm/pm7150l_firmware
qualcomm/pm7250_firmware
qualcomm/pm7250b_firmware
... and 40 more
Published
Feb 22, 2021
Tracked Since
Feb 18, 2026