25 known vulnerabilities · sorted by CVSS score
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
Memory corruption while performing finish HMAC operation when context is freed by keymaster.
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
Memory corruption in SPS Application while requesting for public key in sorter TA.
Memory corruption in Audio while processing RT proxy port register driver.
Memory Corruption in Core due to secure memory access by user while loading modem image.
Memory corruption while loading an ELF segment in TEE Kernel.
Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network.
Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.
Memory corruption in MPP performance while accessing DSM watermark using external memory address.
Memory corruption while using the UIM diag command to get the operators name.
Memory corruption while processing a malformed license file during reboot.
Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
Memory corruption during PlayReady APP usecase while processing TA commands.
Memory Corruption in SPS Application while exporting public key in sorter TA.
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
Cryptographic issue in HLOS during key management.
Cryptographic issue while performing RSA PKCS padding decoding.
Transient DOS while loading the TA ELF file.