First published: Thu Jan 21 2021(Updated: )
Use after free issue in HIDL while using callback to post event in Rx thread when internal mutex is not acquired and meantime close is triggered and callback instance is deleted in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm APQ8017 | ||
Qualcomm APQ8053 Firmware | ||
Qualcomm MSM8917 Firmware | ||
Qualcomm MSM8953 Firmware | ||
Qualcomm PM215 Firmware | ||
Qualcomm pm3003a firmware | ||
Qualcomm pm439 firmware | ||
Qualcomm PM6125 Firmware | ||
Qualcomm PM6150 Firmware | ||
Qualcomm PM6150 | ||
Qualcomm PM6150 | ||
Qualcomm pm6350 firmware | ||
Qualcomm pm640a firmware | ||
Qualcomm pm640l firmware | ||
Qualcomm PM640P Firmware | ||
Qualcomm pm660 firmware | ||
Qualcomm PM660L | ||
Qualcomm pm670 firmware | ||
Qualcomm PM670L Firmware | ||
Qualcomm Pm7150a Firmware | ||
Qualcomm pm7150l firmware | ||
Qualcomm PM7250 Firmware | ||
Qualcomm PM7250B Firmware | ||
Qualcomm pm7350c firmware | ||
Qualcomm PM8008 Firmware | ||
Qualcomm PM8009 | ||
Qualcomm PM8150A Firmware | ||
Qualcomm PM8150B Firmware | ||
Qualcomm PM8150C Firmware | ||
Qualcomm PM8150L | ||
Qualcomm PM8250 Firmware | ||
Qualcomm PM8350 | ||
Qualcomm PM8350B Firmware | ||
Qualcomm pm8350bh firmware | ||
Qualcomm PM8350BHS | ||
Qualcomm PM8350C Firmware | ||
Qualcomm PM855P | ||
Qualcomm pm855b firmware | ||
Qualcomm pm855l firmware | ||
Qualcomm PM8916 Firmware | ||
Qualcomm MSM8937 | ||
Qualcomm PM8953 Firmware | ||
Qualcomm PMI632 Firmware | ||
Qualcomm PMI8937 | ||
Qualcomm PM8952 | ||
Qualcomm pmk7350 firmware | ||
Qualcomm PMK8002 Firmware | ||
Qualcomm pmk8003 firmware | ||
Qualcomm pmk8350 firmware | ||
Qualcomm pmm8195au firmware | ||
Qualcomm pmm855au firmware | ||
Qualcomm PMR525 Firmware | ||
Qualcomm pmr735a firmware | ||
Qualcomm pmr735b firmware | ||
Qualcomm PMX55 | ||
Qualcomm qat3514 firmware | ||
Qualcomm qat3516 firmware | ||
Qualcomm QAT 3518 | ||
Qualcomm QAT3519 Firmware | ||
Qualcomm QAT3522 firmware | ||
Qualcomm QAT3550 Firmware | ||
Qualcomm QAT 3555 Firmware | ||
Qualcomm QAT 5515 Firmware | ||
Qualcomm QAT5516 Firmware | ||
Qualcomm QAT 5522 | ||
Qualcomm qat5533 firmware | ||
Qualcomm qat5568 firmware | ||
Qualcomm qbt1500 firmware | ||
Qualcomm QBT2000 | ||
Qualcomm QCA6390 Firmware | ||
Qualcomm QCA6391 Firmware | ||
qualcomm qca6421 firmware | ||
Qualcomm QCA6426 Firmware | ||
Qualcomm QCA6431 | ||
Qualcomm QCA6436 Firmware | ||
qualcomm qca6574a firmware | ||
Qualcomm QCA6574AU | ||
Qualcomm QCA6595AU Firmware | ||
Qualcomm QCA6595AU Firmware | ||
Qualcomm QCA6696 Firmware | ||
Qualcomm QCS605 Firmware | ||
Qualcomm qdm2301 firmware | ||
Qualcomm qdm2302 firmware | ||
Qualcomm qdm2305 firmware | ||
Qualcomm QDM2307 | ||
Qualcomm QDM2308 Firmware | ||
Qualcomm QDM2310 | ||
Qualcomm qdm3301 firmware | ||
Qualcomm qdm3302 firmware | ||
Qualcomm qdm4643 firmware | ||
Qualcomm qdm4650 firmware | ||
Qualcomm qdm5579 firmware | ||
Qualcomm qdm5620 firmware | ||
Qualcomm qdm5621 firmware | ||
Qualcomm QDM5650 | ||
Qualcomm qdm5652 firmware | ||
Qualcomm qdm5670 firmware | ||
Qualcomm qdm5671 firmware | ||
Qualcomm qdm5677 firmware | ||
Qualcomm qdm5679 firmware | ||
Qualcomm QET4101 Firmware | ||
Qualcomm QET5100 Firmware | ||
Qualcomm QET5100M | ||
Qualcomm qet6100 firmware | ||
Qualcomm QET6110 Firmware | ||
Qualcomm QFE2101 Firmware | ||
Qualcomm QFE2520 Firmware | ||
Qualcomm QFE2550 Firmware | ||
Qualcomm QFE3340 Firmware | ||
Qualcomm QFE4301 Firmware | ||
Qualcomm qfe4302 firmware | ||
Qualcomm QFE4303 Firmware | ||
Qualcomm qfe4305 firmware | ||
Qualcomm QFE4308 Firmware | ||
Qualcomm qfe4309 firmware | ||
Qualcomm QFE4320 Firmware | ||
Qualcomm qfe4373fc firmware | ||
Qualcomm QFS2530 | ||
Qualcomm QFS2580 | ||
Qualcomm qfs2608 firmware | ||
Qualcomm qfs2630 firmware | ||
Qualcomm QLN4642 Firmware | ||
Qualcomm QLN4650 | ||
Qualcomm qln5020 firmware | ||
Qualcomm qln5030 firmware | ||
Qualcomm qln5040 firmware | ||
Qualcomm qpa2625 firmware | ||
Qualcomm QPA4360 Firmware | ||
Qualcomm qpa4361 firmware | ||
Qualcomm qpa5373 firmware | ||
Qualcomm qpa5461 firmware | ||
Qualcomm qpa5580 firmware | ||
Qualcomm QPA5581 | ||
Qualcomm qpa6560 firmware | ||
Qualcomm qpa8673 firmware | ||
Qualcomm QPA8686 Firmware | ||
Qualcomm qpa8801 firmware | ||
Qualcomm QPA8802 | ||
Qualcomm qpa8803 firmware | ||
Qualcomm QPA8821 Firmware | ||
Qualcomm qpa8842 firmware | ||
Qualcomm qpm4621 firmware | ||
Qualcomm QPM4630 firmware | ||
Qualcomm QPM4640 | ||
Qualcomm QPM4641 Firmware | ||
Qualcomm qpm4650 firmware | ||
Qualcomm qpm5621 firmware | ||
Qualcomm qpm5641 firmware | ||
Qualcomm qpm5658 firmware | ||
Qualcomm qpm5670 firmware | ||
Qualcomm qpm5677 firmware | ||
Qualcomm qpm5679 firmware | ||
Qualcomm qpm5870 firmware | ||
Qualcomm qpm5875 | ||
Qualcomm qpm6582 firmware | ||
Qualcomm QPM6585 Firmware | ||
Qualcomm QPM6621 Firmware | ||
Qualcomm QPM6670 Firmware | ||
Qualcomm QPM8820 | ||
Qualcomm QPM8830 Firmware | ||
Qualcomm QPM8870 Firmware | ||
Qualcomm QPM8895 Firmware | ||
Qualcomm SM7250 | ||
Qualcomm QSW6310 Firmware | ||
Qualcomm QSW8573 Firmware | ||
Qualcomm QSW8574 Firmware | ||
Qualcomm QTC410S Firmware | ||
Qualcomm qtc800h firmware | ||
Qualcomm qtc801s firmware | ||
Qualcomm QTM525 | ||
Qualcomm 215 Firmware | ||
Qualcomm SA6155P | ||
Qualcomm SA8150P Firmware | ||
Qualcomm SA8155 Firmware | ||
Qualcomm SA8195P Firmware | ||
Qualcomm SD429 Firmware | ||
Qualcomm Snapdragon 439 | ||
Qualcomm Snapdragon 632 | ||
Qualcomm Snapdragon 665 | ||
Qualcomm Snapdragon 675 | ||
Qualcomm Snapdragon 690 5G | ||
Qualcomm Snapdragon 750G | ||
Qualcomm Snapdragon 765 | ||
Qualcomm Snapdragon 765G | ||
Qualcomm SD768G Firmware | ||
Qualcomm Snapdragon 855 | ||
Qualcomm SD8655G | ||
Qualcomm Snapdragon 888 5G | ||
Qualcomm SDA429W Firmware | ||
qualcomm SDM429W firmware | ||
Qualcomm SDR660 | ||
Qualcomm SDR660G Firmware | ||
Qualcomm SDR735G Firmware | ||
Qualcomm SDR735G Firmware | ||
Qualcomm SDR8250 | ||
Qualcomm SDR865 | ||
Qualcomm SDX55 Firmware | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SDXR1 Firmware | ||
Qualcomm SDXR25G Firmware | ||
Qualcomm SM7250 | ||
Qualcomm SM7350 Firmware | ||
Qualcomm SMB1351 Firmware | ||
Qualcomm SMB1355 Firmware | ||
Qualcomm SMB1358 Firmware | ||
Qualcomm SMB1360 Firmware | ||
Qualcomm SMB1381 Firmware | ||
Qualcomm SMB1390 Firmware | ||
Qualcomm SMB1394 Firmware | ||
Qualcomm SMB1395 Firmware | ||
Qualcomm SMB1396 Firmware | ||
Qualcomm SMB1398 | ||
Qualcomm SMR525 | ||
Qualcomm SMR526 | ||
Qualcomm SMR545 | ||
Qualcomm SMR546 | ||
Qualcomm WCD9326 Firmware | ||
Qualcomm WCD9341 Firmware | ||
Qualcomm WCD9370 Firmware | ||
Qualcomm WCD9375 Firmware | ||
Qualcomm WCD9380 Firmware | ||
Qualcomm WCD9385 Firmware | ||
Qualcomm WCN3610 Firmware | ||
Qualcomm WCN3615 Firmware | ||
Qualcomm WCN3620 Firmware | ||
Qualcomm WCN3660B Firmware | ||
Qualcomm WCN3680B Firmware | ||
Qualcomm WCN3680B Firmware | ||
Qualcomm WCN3950 Firmware | ||
qualcomm wcn3980 firmware | ||
Qualcomm WCN3988 | ||
Qualcomm WCN3990 | ||
Qualcomm WCN3991 Firmware | ||
Qualcomm wcn3998 firmware | ||
Qualcomm WCN6740 Firmware | ||
Qualcomm WCN6850 Firmware | ||
Qualcomm WCN6851 Firmware | ||
Qualcomm WCN6856 | ||
Qualcomm WGR7640 Firmware | ||
Qualcomm WSA8810 Firmware | ||
qualcomm wsa8815 firmware | ||
Qualcomm WSA8830 | ||
Qualcomm WSA8835 Firmware | ||
Qualcomm WTR2955 Firmware | ||
Qualcomm WTR2965 Firmware | ||
Qualcomm WTR3925L |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-11148 is rated as high due to the potential for exploitation through use-after-free vulnerabilities.
To fix CVE-2020-11148, apply the latest firmware updates provided by Qualcomm for your affected devices.
The potential impacts of CVE-2020-11148 include denial of service and potential remote code execution due to improper callback handling.
CVE-2020-11148 affects a variety of Qualcomm Snapdragon devices across different platforms including automotive, computing, and IoT.
Currently, there is no known workaround for CVE-2020-11148 other than applying the appropriate firmware updates.