Description
Use after free in graphics fence due to a race condition while closing fence file descriptor and destroy graphics timeline simultaneously in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Exploits (1)
References (2)
Core 2
Core References
Patch, Vendor Advisory
https://www.qualcomm.com/company/product-security/bulletins/may-2022-bulletin
Exploit, Third Party Advisory
http://packetstormsecurity.com/files/172850/Qualcomm-kgsl-Driver-Use-After-Free.html
Scores
CVSS v3
8.4
EPSS
0.0256
EPSS Percentile
85.7%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-362
Status
published
Products (50)
qualcomm/apq8053_firmware
qualcomm/ar8035_firmware
qualcomm/msm8953_firmware
qualcomm/qca6174a_firmware
qualcomm/qca6390_firmware
qualcomm/qca6391_firmware
qualcomm/qca6426_firmware
qualcomm/qca6436_firmware
qualcomm/qca6595au_firmware
qualcomm/qca8081_firmware
... and 40 more
Published
Jun 14, 2022
Tracked Since
Feb 18, 2026