| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE. |
| Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame. |
| Transient DOS in Data modem while handling TLB control messages from the Network. |
| Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware. |
| Memory corruption while running VK synchronization with KASAN enabled. |
| Memory corruption while invoking callback function of AFE from ADSP. |
| Memory corruption in Hypervisor when platform information mentioned is not aligned. |
| Memory Corruption in WLAN HOST while fetching TX status information. |
| Memory corruption while processing manipulated payload in video firmware. |
| Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expected size. |
| Memory corruption while processing finish_sign command to pass a rsp buffer. |
| Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command. |
| Memory corruption while processing a QMI request for allocating memory from a DHMS supported subsystem. |
| Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls, |
| Memory corruption while processing buffer initialization, when trusted report for certain report types are generated. |
| Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time. |
| Memory corruption when Alternative Frequency offset value is set to 255. |
| Information Disclosure in Qualcomm IPC while reading values from shared memory in VM. |
| Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL. |
| Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command. |