| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Memory corruption during PlayReady APP usecase while processing TA commands. |
| Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables |
| Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables |
| Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session. |
| Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus. |
| Memory corruption in Audio while processing RT proxy port register driver. |
| Memory corruption in Audio while processing the VOC packet data from ADSP. |
| Memory Corruption in HLOS while importing a cryptographic key into KeyMaster Trusted Application. |
| Memory corruption while processing finish_sign command to pass a rsp buffer. |
| Memory corruption in Boot while running a ListVars test in UEFI Menu during boot. |
| Memory Corruption in Audio while allocating the ion buffer during the music playback. |
| Memory Corruption in SPS Application while exporting public key in sorter TA. |
| Memory corruption when there is failed unmap operation in GPU. |
| Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption. |
| Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE. |
| Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame. |
| Transient DOS while processing TIM IE from beacon frame as there is no check for IE length. |
| Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header. |
| Memory corruption in SPS Application while requesting for public key in sorter TA. |
| Memory corruption in HLOS while running playready use-case. |