| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE. |
| Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command. |
| Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures occur. |
| Memory corruption during concurrent access to server info object due to unprotected critical field. |
| Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver. |
| Information disclosure in Audio while accessing AVCS services from ADSP payload. |
| Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame. |
| Information Disclosure in Qualcomm IPC while reading values from shared memory in VM. |
| Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time. |
| Transient DOS while processing PDU Release command with a parameter PDU ID out of range. |
| Memory corruption in Core Services while executing the command for removing a single event listener. |
| Memory corruption in Audio while processing IIR config data from AFE calibration block. |
| Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size. |
| Improper Access to the VM resource manager can lead to Memory Corruption. |
| Memory corruption when user provides data for FM HCI command control operations. |
| Memory corruption in Audio while running invalid audio recording from ADSP. |
| Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments. |
| Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory. |
| Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption. |
| Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. |