17 known vulnerabilities · sorted by CVSS score
Memory corruption in Core Services while executing the command for removing a single event listener.
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
Memory corruption when two threads try to map and unmap a single node simultaneously.
Memory corruption in Audio while processing RT proxy port register driver.
Memory corruption when there is failed unmap operation in GPU.
Memory corruption while processing finish_sign command to pass a rsp buffer.
Memory corruption in SPS Application while requesting for public key in sorter TA.
Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.
Memory corruption while retrieving the CBOR data from TA.
Memory corruption while triggering commands in the PlayReady Trusted application.
Memory corruption when user provides data for FM HCI command control operations.
Memory corruption while reading secure file.
Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures occur.
Transient DOS may occur while processing malformed length field in SSID IEs.
Transient DOS while processing received beacon frame.
Memory corruption while parsing qcp clip with invalid chunk data size.
Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.