159 known vulnerabilities · sorted by CVSS score
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.
Memory corruption while parsing the ML IE due to invalid frame content.
Memory Corruption when a corrupted ELF image with an oversized file size is read into a buffer without authentication.
Memory corruption while configuring a Hypervisor based input virtual device.
Cryptographic issue may occur while encrypting license data.
Memory corruption while handling user packets during VBO bind operation.
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.
Memory corruption when memory mapped in a VBO is not unmapped by the GPU SMMU.
Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaiming of memory buffers are performed at the same time.
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
Memory corruption while invoking IOCTL call for GPU memory allocation and size param is greater than expected size.
Memory corruption while allocating memory in HGSL driver.
Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager.
Memory corruption while calculating total metadata size when a very high reserved size is requested by gralloc clients.
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
Memory corruption while processing graphics kernel driver request to create DMA fence.
Memory corruption when two threads try to map and unmap a single node simultaneously.
Memory corruption while performing finish HMAC operation when context is freed by keymaster.