155 known vulnerabilities · sorted by CVSS score
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.
Memory corruption in Core while processing control functions.
Memory corruption in HLOS while running playready use-case.
Memory corruption due to double free in core while initializing the encryption key.
Cryptographic issue in Data Modem due to improper authentication during TLS handshake.
Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expected size.
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
Memory Corruption in Core due to secure memory access by user while loading modem image.
Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.
Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.
Memory corruption while calculating total metadata size when a very high reserved size is requested by gralloc clients.
Memory corruption in HLOS while invoking IOCTL calls from user-space.
Memory corruption while invoking IOCTL call for GPU memory allocation and size param is greater than expected size.
Memory corruption when processing cmd parameters while parsing vdev.
Memory corruption while allocating memory in HGSL driver.
Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaiming of memory buffers are performed at the same time.