51 known vulnerabilities · sorted by CVSS score
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
Memory corruption while configuring a Hypervisor based input virtual device.
Memory corruption while verifying the serialized header when the key pairs are generated.
Memory corruption while processing finish_sign command to pass a rsp buffer.
Memory corruption when there is failed unmap operation in GPU.
Memory corruption in SPS Application while requesting for public key in sorter TA.
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
Memory corruption in Audio while processing RT proxy port register driver.
Information disclosure in Video while parsing mp2 clip with invalid section length.
Information disclosure while parsing the OCI IE with invalid length.
Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.
Memory corruption during the FRS UDS generation process.
Memory corruption while reading the FW response from the shared queue.
Memory corruption while triggering commands in the PlayReady Trusted application.
Memory corruption while maintaining memory maps of HLOS memory.
Memory corruption while processing video packets received from video firmware.
Memory corruption while parsing the memory map info in IOCTL calls.
Memory corruption when the channel ID passed by user is not validated and further used.
Memory corruption while retrieving the CBOR data from TA.