| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message. |
| Memory corruption due to stack based buffer overflow in core while sending command from USB of large size. |
| Memory corruption due to buffer copy without checking the size of input in modem while decoding raw SMS received. |
| Information disclosure due to buffer over-read in modem while reading configuration parameters. |
| Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http. |
| Memory corruption in Audio due to use of out-of-range pointer offset while Initiating a voice call session from user space with invalid session id. |
| Memory corruption due to configuration weakness in modem wile sending command to write protected files. |
| Memory corruption due to buffer copy without checking size of input while running memory sharing tests with large scattered memory. |
| Memory corruption in FM Host due to buffer copy without checking the size of input in FM Host |
| Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets. |
| Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination option in header. |
| Memory corruption due to buffer copy without checking the size of input in Core while processing ioctl commands from diag client applications. |
| Memory corruption in core due to buffer copy without check9ing the size of input while processing ioctl queries. |
| Information disclosure due to buffer over-read while parsing DNS response packets in Modem. |
| Information disclosure in Trusted Execution Environment due to buffer over-read while processing metadata verification requests. |
| Information disclosure in Automotive multimedia due to buffer over-read. |
| Memory corruption in modem due to buffer overflow while processing a PPP packet |
| memory corruption in modem due to improper check while calculating size of serialized CoAP message |
| IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could exploit this vulnerability to obtain sensitive information from the cookie. IBM X-Force ID: 228587. |
| An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors. |