24 known vulnerabilities · sorted by CVSS score
Memory corruption in Core Services while executing the command for removing a single event listener.
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
Memory corruption in Audio while processing RT proxy port register driver.
Memory corruption in SPS Application while requesting for public key in sorter TA.
Memory corruption when there is failed unmap operation in GPU.
Memory corruption when two threads try to map and unmap a single node simultaneously.
Memory corruption while processing finish_sign command to pass a rsp buffer.
Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.
Memory corruption when the payload received from firmware is not as per the expected protocol size.
Memory corruption while processing video packets received from video firmware.
Memory corruption while reading the FW response from the shared queue.
Memory Corruption while deallocating graphics processing unit memory buffers due to improper handling of memory pointers.
Memory corruption when user provides data for FM HCI command control operations.
Memory corruption while processing manipulated payload in video firmware.
Memory corruption while maintaining memory maps of HLOS memory.
Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures occur.
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.
Transient DOS while processing received beacon frame.
Transient DOS may occur while processing malformed length field in SSID IEs.