| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Transient DOS while processing DL NAS Transport message, as specified in 3GPP 24.501 v16. |
| Memory corruption in DSP Service during a remote call from HLOS to DSP. |
| Memory corruption while processing buffer initialization, when trusted report for certain report types are generated. |
| Memory corruption when user provides data for FM HCI command control operations. |
| Memory corruption when BTFM client sends new messages over Slimbus to ADSP. |
| Memory Corruption in WLAN HOST while parsing QMI response message from firmware. |
| Information disclosure in Audio while accessing AVCS services from ADSP payload. |
| Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage. |
| Memory corruption in wearables while processing data from AON. |
| Transient DOS in Modem after RRC Setup message is received. |
| Memory corruption in Audio while processing IIR config data from AFE calibration block. |
| Memory corruption in Core when updating rollback version for TA and OTA feature is enabled. |
| Cryptographic issue in Automotive while unwrapping the key secs2d and verifying with RPMB data. |
| Memory corruption in TZ Secure OS while requesting a memory allocation from TA region. |
| Memory corruption in WLAN due to buffer copy without checking size of input while parsing keys in Snapdragon Connectivity, Snapdragon Mobile |
| Memory corruption in HLOS while running playready use-case. |
| Transient DOS in Data Modem during DTLS handshake. |
| Improper handling of resource allocation in virtual machines can lead to information exposure in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile |
| Possible use after free when process shell memory is freed using IOCTL call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking |
| The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption. |