High
CVSS: 7.8
Memory Corruption when accessing a buffer after it has been freed while processing IOCTL calls.
High
CVSS: 7.1
Cryptographic issue when a Trusted Zone with outdated code is triggered by a HLOS providing incorrect input.
Medium
CVSS: 5.5
Information disclosure when a weak hashed value is returned to userland code in response to a IOCTL call to obtain a session ID.
Medium
CVSS: 6.7
Information disclosure while exposing internal TA-to-TA communication APIs to HLOS
Medium
CVSS: 6.5
Transient DOS when a remote device sends an invalid connection request during BT connectable LE scan.
Medium
CVSS: 5.5
Transient DOS while processing video packets received from video firmware.
High
CVSS: 7.5
Transient DOS while handling command data during power control processing.
High
CVSS: 7.5
Transient DOS while processing a frame with malformed shared-key descriptor.
Medium
CVSS: 6.1
Information disclosure while opening a fastrpc session when domain is not sanitized.
High
CVSS: 7.8
Memory corruption while processing IOCTL command when multiple threads are called to map/unmap buffer concurrently.
High
CVSS: 7.5
Transient DOS while handling beacon frames with invalid IE header length.
High
CVSS: 7.8
Memory corruption while processing data packets in diag received from Unix clients.
High
CVSS: 7.8
Memory corruption while processing manipulated payload in video firmware.
Critical
CVSS: 9.1
Cryptographic issue occurs due to use of insecure connection method while downloading.
High
CVSS: 7.5
Transient DOS while processing the EHT operation IE in the received beacon frame.
High
CVSS: 7.8
Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to write null character at the end of buffer.
High
CVSS: 7.5
Transient DOS while parsing per STA profile in ML IE.
High
CVSS: 7.5
Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key data IE.
High
CVSS: 7.8
Memory corruption while triggering commands in the PlayReady Trusted application.
High
CVSS: 7.5
Transient DOS may occur while parsing extended IE in beacon.