6.9

CVE-2020-11151

Race condition occurs while calling user space ioctl from two different threads can results to use after free issue in video in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

Data is provided by the National Vulnerability Database (NVD)
QualcommPm3003a Version-
QualcommPm6125 Version-
QualcommPm6150 Version-
QualcommPm6150a Version-
QualcommPm6150l Version-
QualcommPm6350 Version-
QualcommPm640a Version-
QualcommPm640l Version-
QualcommPm640p Version-
QualcommPm7150a Version-
QualcommPm7150l Version-
QualcommPm7250 Version-
QualcommPm7250b Version-
QualcommPm8008 Version-
QualcommPm8009 Version-
QualcommPm8150a Version-
QualcommPm8150b Version-
QualcommPm8150c Version-
QualcommPm8150l Version-
QualcommPm8250 Version-
QualcommPmi632 Version-
QualcommPmk8002 Version-
QualcommPmk8003 Version-
QualcommPmm8195au Version-
QualcommPmm855au Version-
QualcommPmr525 Version-
QualcommPmr735a Version-
QualcommPmr735b Version-
QualcommPmx55 Version-
QualcommQat3516 Version-
QualcommQat3518 Version-
QualcommQat3519 Version-
QualcommQat3522 Version-
QualcommQat3550 Version-
QualcommQat3555 Version-
QualcommQat5515 Version-
QualcommQat5516 Version-
QualcommQat5522 Version-
QualcommQat5533 Version-
QualcommQbt1500 Version-
QualcommQbt2000 Version-
QualcommQca6390 Version-
QualcommQca6391 Version-
QualcommQca6421 Version-
QualcommQca6426 Version-
QualcommQca6431 Version-
QualcommQca6436 Version-
QualcommQca6574a Version-
QualcommQca6574au Version-
QualcommQca6584au Version-
QualcommQca6595 Version-
QualcommQca6595au Version-
QualcommQca6696 Version-
QualcommQcm4290 Version-
QualcommQcs4290 Version-
QualcommQdm2301 Version-
QualcommQdm2305 Version-
QualcommQdm2307 Version-
QualcommQdm2308 Version-
QualcommQdm2310 Version-
QualcommQdm3301 Version-
QualcommQdm5620 Version-
QualcommQdm5621 Version-
QualcommQdm5650 Version-
QualcommQdm5652 Version-
QualcommQdm5670 Version-
QualcommQdm5671 Version-
QualcommQdm5677 Version-
QualcommQdm5679 Version-
QualcommQet4101 Version-
QualcommQet5100 Version-
QualcommQet6100 Version-
QualcommQet6110 Version-
QualcommQfs2530 Version-
QualcommQfs2580 Version-
QualcommQln4642 Version-
QualcommQln4650 Version-
QualcommQln5020 Version-
QualcommQln5030 Version-
QualcommQln5040 Version-
QualcommQpa2625 Version-
QualcommQpa4360 Version-
QualcommQpa5580 Version-
QualcommQpa5581 Version-
QualcommQpa6560 Version-
QualcommQpa8673 Version-
QualcommQpa8686 Version-
QualcommQpa8801 Version-
QualcommQpa8802 Version-
QualcommQpa8803 Version-
QualcommQpa8821 Version-
QualcommQpa8842 Version-
QualcommQpm4650 Version-
QualcommQpm5621 Version-
QualcommQpm5658 Version-
QualcommQpm5670 Version-
QualcommQpm5677 Version-
QualcommQpm5679 Version-
QualcommQpm6582 Version-
QualcommQpm6585 Version-
QualcommQpm8820 Version-
QualcommQpm8830 Version-
QualcommQpm8870 Version-
QualcommQpm8895 Version-
QualcommQsm7250 Version-
QualcommQsw8574 Version-
QualcommQtc410s Version-
QualcommQtc800h Version-
QualcommQtc801s Version-
QualcommQtm525 Version-
QualcommSa6155p Version-
QualcommSa8150p Version-
QualcommSa8155 Version-
QualcommSa8195p Version-
QualcommSd460 Version-
QualcommSd662 Version-
QualcommSd665 Version-
QualcommSd675 Version-
QualcommSd6905g Version-
QualcommSd750g Version-
QualcommSd765 Version-
QualcommSd765g Version-
QualcommSd768g Version-
QualcommSd8655g Version-
QualcommSda429w Version-
QualcommSdr425 Version-
QualcommSdr660 Version-
QualcommSdr660g Version-
QualcommSdr735 Version-
QualcommSdr8250 Version-
QualcommSdr865 Version-
QualcommSdx55 Version-
QualcommSdx55m Version-
QualcommSdxr25g Version-
QualcommSm7250p Version-
QualcommSmb1354 Version-
QualcommSmb1355 Version-
QualcommSmb1390 Version-
QualcommSmb1395 Version-
QualcommSmb1396 Version-
QualcommSmr525 Version-
QualcommSmr526 Version-
QualcommWcd9341 Version-
QualcommWcd9370 Version-
QualcommWcd9375 Version-
QualcommWcd9380 Version-
QualcommWcd9385 Version-
QualcommWcn3610 Version-
QualcommWcn3620 Version-
QualcommWcn3660b Version-
QualcommWcn3950 Version-
QualcommWcn3980 Version-
QualcommWcn3988 Version-
QualcommWcn3991 Version-
QualcommWcn3998 Version-
QualcommWcn6750 Version-
QualcommWcn6850 Version-
QualcommWcn6851 Version-
QualcommWgr7640 Version-
QualcommWsa8810 Version-
QualcommWsa8815 Version-
QualcommWsa8830 Version-
QualcommWsa8835 Version-
QualcommWtr2965 Version-
QualcommWtr3925 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.03% 0.056
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.4 0.5 5.9
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 6.9 3.4 10
AV:L/AC:M/Au:N/C:C/I:C/A:C
CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

CWE-416 Use After Free

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.