| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Memory corruption while running VK synchronization with KASAN enabled. |
| Memory corruption when there is failed unmap operation in GPU. |
| Memory corruption while processing IOCTL call for getting group info. |
| Memory corruption while processing manipulated payload in video firmware. |
| Memory corruption while playing audio file having large-sized input buffer. |
| Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message. |
| Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper. |
| Memory corruption while invoking IOCTLs calls in Automotive Multimedia. |
| Memory Corruption in Core during syscall for Sectools Fuse comparison feature. |
| Transient DOS while processing TIM IE from beacon frame as there is no check for IE length. |
| Memory Corruption in Audio while allocating the ion buffer during the music playback. |
| Memory corruption in Core when updating rollback version for TA and OTA feature is enabled. |
| Cryptographic issue in Automotive while unwrapping the key secs2d and verifying with RPMB data. |
| Memory corruption in TZ Secure OS while requesting a memory allocation from TA region. |
| Memory corruption in WLAN due to buffer copy without checking size of input while parsing keys in Snapdragon Connectivity, Snapdragon Mobile |
| Memory corruption in HLOS while running playready use-case. |
| Transient DOS in Data Modem during DTLS handshake. |
| Improper handling of resource allocation in virtual machines can lead to information exposure in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile |
| Possible use after free when process shell memory is freed using IOCTL call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking |
| The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption. |