| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Information disclosure while deriving keys for a session for any Widevine use case. |
| Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE. |
| Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size. |
| Memory corruption when multiple listeners are being registered with the same file descriptor. |
| Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. |
| Memory Corruption in WLAN HOST while fetching TX status information. |
| Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command. |
| Information disclosure in Video while parsing mp2 clip with invalid section length. |
| Memory corruption when Alternative Frequency offset value is set to 255. |
| Information Disclosure in data Modem while parsing an FMTP line in an SDP message. |
| Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame. |
| Memory corruption when user provides data for FM HCI command control operations. |
| Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network. |
| Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL. |
| Memory corruption while operating the mailbox in Automotive. |
| Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL. |
| Memory corruption in Audio while processing RT proxy port register driver. |
| Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver. |
| Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data. |
| Memory corruption in Core Services while executing the command for removing a single event listener. |