281 known vulnerabilities · sorted by CVSS score
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
Memory corruption while selecting the PLMN from SOR failed list.
Memory corruption while parsing the ML IE due to invalid frame content.
Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.
Memory corruption in Modem while processing security related configuration before AS Security Exchange.
Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake.
Memory corruption while processing MBSSID beacon containing several subelement IE.
Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.
Memory corruption in Core Services while executing the command for removing a single event listener.
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
Memory corruption in Core while processing control functions.
Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data.
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
Cryptographic issue in Data Modem due to improper authentication during TLS handshake.
Memory corruption in core services when Diag handler receives a command to configure event listeners.
Improper Access to the VM resource manager can lead to Memory Corruption.
Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.