279 known vulnerabilities · sorted by CVSS score
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
Memory corruption while processing MBSSID beacon containing several subelement IE.
Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake.
Memory corruption in Modem while processing security related configuration before AS Security Exchange.
Memory corruption while selecting the PLMN from SOR failed list.
Memory corruption in WLAN Host while processing RRM beacon on the AP.
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.
Memory corruption while redirecting log file to any file location with any file name.
Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.
Memory corruption while parsing the ML IE due to invalid frame content.
Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
Memory corruption in Core Services while executing the command for removing a single event listener.
Memory corruption in Core while processing control functions.
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
Cryptographic issue in Data Modem due to improper authentication during TLS handshake.
Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data.
Cryptographic issue occurs due to use of insecure connection method while downloading.
Memory corruption in core services when Diag handler receives a command to configure event listeners.