CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
Memory corruption while processing data sent by FE driver. |
Memory corruption while handling repeated memory unmap requests from guest VM. |
Memory corruption due to double free when multiple threads race to set the timestamp store. |
Memory corruption due to global buffer overflow when a test command uses an invalid payload type. |
Cryptographic issue while performing RSA PKCS padding decoding. |
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs. |
Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet. |
Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length. |
Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set. |
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency. |
Transient DOS while parsing the EPTM test control message to get the test pattern. |
Memory corruption while selecting the PLMN from SOR failed list. |
Memory corruption may occur while initiating two IOCTL calls simultaneously to create processes from two different threads. |
Memory corruption while processing IOCTL calls. |
Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shared memory. |
memory corruption while processing IOCTL commands, when the buffer in write loopback mode is accessed after being freed. |
Transient DOS while processing the tone measurement response buffer when the response buffer is out of range. |
Memory corruption during dynamic process creation call when client is only passing address and length of shell binary. |
Memory corruption while processing INIT and multimode invoke IOCTL calls on FastRPC. |
Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing sources. |