207 known vulnerabilities · sorted by CVSS score
Memory corruption while selecting the PLMN from SOR failed list.
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information.
Memory corruption in HLOS while running playready use-case.
Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.
Memory corruption in Core Services while executing the command for removing a single event listener.
Memory corruption due to double free in core while initializing the encryption key.
Memory corruption in Core while processing control functions.
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
Cryptographic issue in Data Modem due to improper authentication during TLS handshake.
Cryptographic issue occurs due to use of insecure connection method while downloading.
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
Memory corruption when processing cmd parameters while parsing vdev.
Memory Corruption in Core due to secure memory access by user while loading modem image.
Memory corruption due to double free in Core while mapping HLOS address to the list.
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.
Memory corruption while running VK synchronization with KASAN enabled.
Memory corruption in DSP Service during a remote call from HLOS to DSP.
Memory corruption in Graphics while importing a file.