24 known vulnerabilities · sorted by CVSS score
Memory corruption in Core Services while executing the command for removing a single event listener.
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
Memory corruption when there is failed unmap operation in GPU.
Memory corruption in Audio while processing RT proxy port register driver.
Memory corruption while processing finish_sign command to pass a rsp buffer.
Memory corruption when two threads try to map and unmap a single node simultaneously.
Memory corruption in SPS Application while requesting for public key in sorter TA.
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.
Memory corruption while reading secure file.
Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures occur.
Memory corruption while processing video packets received from video firmware.
Memory corruption when the payload received from firmware is not as per the expected protocol size.
Memory corruption while retrieving the CBOR data from TA.
Memory corruption while reading the FW response from the shared queue.
Transient DOS while processing multiple payload container type with incorrect container length received in DL NAS transport OTA in NR.
Transient DOS may occur while processing malformed length field in SSID IEs.
Transient DOS while processing PDU Release command with a parameter PDU ID out of range.
Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR.
Transient DOS while processing multiple IKEV2 Informational Request to device from IPSEC server with different identifiers.
Transient DOS while processing received beacon frame.