High
CVSS: 7.8
Memory corruption while executing timestamp video decode command with large input values.
High
CVSS: 7.5
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
High
CVSS: 7.8
Memory corruption during dynamic process creation call when client is only passing address and length of shell binary.
High
CVSS: 7.8
Memory corruption while processing INIT and multimode invoke IOCTL calls on FastRPC.
Medium
CVSS: 6.6
Memory corruption may occur while processing the OIS packet parser.
High
CVSS: 7.8
Memory corruption while processing an IOCTL request, when buffer significantly exceeds the command argument limit.
Medium
CVSS: 6.7
Memory corruption can occur during context user dumps due to inadequate checks on buffer length.
High
CVSS: 7.8
Memory corruption may occur when invoking IOCTL calls from userspace to the camera kernel driver to dump request information, due to a missing memory requirement check.
High
CVSS: 7.8
Memory corruption while acquire and update IOCTLs during IFE output resource ID validation.
High
CVSS: 7.8
Memory corruption while invoking IOCTL calls from userspace to camera kernel driver to dump request information.
High
CVSS: 7.8
Memory corruption while prociesing command buffer buffer in OPE module.
High
CVSS: 7.8
Memory corruption Camera kernel when large number of devices are attached through userspace.
Medium
CVSS: 6.7
Memory corruption due to improper bounds check while command handling in camera-kernel driver.
High
CVSS: 7.8
Memory corruption while encoding JPEG format.
Medium
CVSS: 6.6
Memory corruption while handling schedule request in Camera Request Manager(CRM) due to invalid link count in the corresponding session.
High
CVSS: 7.8
Memory corruption during concurrent SSR execution due to race condition on the global maps list.
High
CVSS: 7.8
Memory corruption may occur while processing device IO control call for session control.
Medium
CVSS: 6.5
Cryptographic issue may arise because the access control configuration permits Linux to read key registers in TCSR.
High
CVSS: 7.8
Memory corruption while processing IOCTL calls.
High
CVSS: 7.8
Memory corruption occurs during an Escape call if an invalid Kernel Mode CPU event and sync object handle are passed with the DriverKnownEscape flag reset.