18 known vulnerabilities · sorted by CVSS score
Memory corruption while selecting the PLMN from SOR failed list.
Memory corruption in Core Services while executing the command for removing a single event listener.
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network.
Memory corruption while processing key blob passed by the user.
Memory corruption while routing GPR packets between user and root when handling large data packet.
Information disclosure while creating MQ channels.
Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE.
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
Transient DOS when NAS receives ODAC criteria of length 1 and type 1 in registration accept OTA.
Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.
Cryptographic issue while parsing RSA keys in COBR format.
Cryptographic issue while performing RSA PKCS padding decoding.
Information disclosure while reading data from an image using specified offset and size parameters.
Transient DOS when an LTE RLC packet with invalid TB is received by UE.
Information disclosure while processing the hash segment in an MBN file.
There may be information disclosure during memory re-allocation in TZ Secure OS.
While processing the authentication message in UE, improper authentication may lead to information disclosure.