CVE-2020-11277

HIGH

Qualcomm PM3003A and related firmware - Race Condition in FastRPC Async Session Handling

Title source: llm
STIX 2.1

Description

Possible race condition during async fastrpc session after sending RPC message due to the fastrpc ctx gets free during async session in Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile

References (1)

Core 1

Scores

CVSS v3 7.4
EPSS 0.0003
EPSS Percentile 8.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-362 CWE-416
Status published
Products (50)
qualcomm/pm3003a_firmware
qualcomm/pm4250_firmware
qualcomm/pm6125_firmware
qualcomm/pm6150a_firmware
qualcomm/pm6150l_firmware
qualcomm/pm6350_firmware
qualcomm/pm7150a_firmware
qualcomm/pm7150l_firmware
qualcomm/pm7250_firmware
qualcomm/pm7250b_firmware
... and 40 more
Published Feb 22, 2021
Tracked Since Feb 18, 2026