75 known vulnerabilities · sorted by CVSS score
Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.
Memory corruption while processing MBSSID beacon containing several subelement IE.
Memory corruption while parsing the ML IE due to invalid frame content.
Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake.
Memory corruption in Core Services while executing the command for removing a single event listener.
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
Memory corruption while processing TPC target power table in FTM TPC.
Memory corruption in SPS Application while requesting for public key in sorter TA.
Memory corruption when two threads try to map and unmap a single node simultaneously.
Memory corruption when the IOCTL call is interrupted by a signal.
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
Memory corruption while processing finish_sign command to pass a rsp buffer.
Memory corruption in Audio while processing RT proxy port register driver.
Memory corruption while verifying the serialized header when the key pairs are generated.
Memory corruption while invoking HGSL IOCTL context create.
Memory corruption as GPU registers beyond the last protected range can be accessed through LPAC submissions.
Memory corruption while invoking IOCTLs calls in Automotive Multimedia.
Information disclosure in Video while parsing mp2 clip with invalid section length.