143 known vulnerabilities · sorted by CVSS score
Memory corruption while parsing the ML IE due to invalid frame content.
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.
Memory corruption while selecting the PLMN from SOR failed list.
Cryptographic issue occurs due to use of insecure connection method while downloading.
Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
Memory corruption while releasing shared resources in MinkSocket listener thread.
Memory corruption when two threads try to map and unmap a single node simultaneously.
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
Cryptographic issue may occur while encrypting license data.
Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.
Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call.
Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing sources.
Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.
Information disclosure may occur while processing goodbye RTCP packet from network.
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
Memory corruption during management frame processing due to mismatch in T2LM info element.
Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network.
Information disclosure may occur while decoding the RTP packet with invalid header extension from network.