CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption. |
Memory Corruption in Audio while allocating the ion buffer during the music playback. |
Memory corruption when Alternative Frequency offset value is set to 255. |
Memory corruption while reading the FW response from the shared queue. |
Memory corruption when two threads try to map and unmap a single node simultaneously. |
Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user. |
Transient DOS while handling PS event when Program Service name length offset value is set to 255. |
Memory corruption while processing API calls to NPU with invalid input. |
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI. |
Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus. |
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released. |
Memory corruption while performing finish HMAC operation when context is freed by keymaster. |
Transient DOS in WLAN Host when an invalid channel (like channel out of range) is received in STA during CSA IE. |
Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel in CSA IE. |
The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it. |
Buffer overflow can occur if invalid header tries to overwrite the existing buffer which fix size allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 650/52, SD 820, SD 820A, SD 845 / SD 850, SDM439, SDM660, SDX20 |
Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table. |
Memory corruption while processing GPU page table switch. |
Memory corruption while processing voice packet with arbitrary data received from ADSP. |
Memory corruption while handling session errors from firmware. |