| CVE | Vendors | Products | Updated | CVSS v3.1 | 
        | Memory Corruption in Audio while invoking callback function in driver from ADSP. | 
    
    
    
        | Information Disclosure in data Modem while parsing an FMTP line in an SDP message. | 
    
    
    
        | Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware. | 
    
    
    
        | Memory corruption in Audio when memory map command is executed consecutively in ADSP. | 
    
    
    
        | Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expected size. | 
    
    
    
        | Memory Corruption in HLOS while importing a cryptographic key into KeyMaster Trusted Application. | 
    
    
    
        | Memory Corruption in Data Modem while making a MO call or MT VOLTE call. | 
    
    
    
        | Memory Corruption in SPS Application while exporting public key in sorter TA. | 
    
    
    
        | Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value. | 
    
    
    
        | Memory corruption in HLOS while running playready use-case. | 
    
    
    
        | Memory corruption in Audio during playback with speaker protection. | 
    
    
    
        | Memory corruption while processing API calls to NPU with invalid input. | 
    
    
    
        | Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI. | 
    
    
    
        | Memory corruption when allocating and accessing an entry in an SMEM partition. | 
    
    
    
        | Memory corruption while performing finish HMAC operation when context is freed by keymaster. | 
    
    
    
        | Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel in CSA IE. | 
    
    
    
        | Memory Corruption in Audio while invoking IOCTLs calls from the user-space. | 
    
    
    
        | Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message. | 
    
    
    
        | Out of bound read and information disclosure in firmware due to insufficient checking of an embedded structure that can be sent from a kernel driver in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MSM8909W, MSM8996AU, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM439, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130 | 
    
    
    
        | Buffer overflow when the audio buffer size provided by user is larger than the maximum allowable audio buffer size. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS405, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24 |