| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command. |
| Memory corruption in SPS Application while requesting for public key in sorter TA. |
| Information disclosure while deriving keys for a session for any Widevine use case. |
| Transient DOS while processing received beacon frame. |
| Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header. |
| Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame. |
| Transient DOS while processing TIM IE from beacon frame as there is no check for IE length. |
| Memory corruption in Boot while running a ListVars test in UEFI Menu during boot. |
| Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. |
| Information disclosure in WLAN HAL while handling command through WMI interfaces. |
| Memory corruption when two threads try to map and unmap a single node simultaneously. |
| Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL. |
| Transient DOS while parse fils IE with length equal to 1. |
| Transient DOS in Bluetooth Host while rfc slot allocation. |
| Memory corruption in HLOS while invoking IOCTL calls from user-space. |
| Memory corruption when processing cmd parameters while parsing vdev. |
| Memory corruption in HLOS while running playready use-case. |
| Memory corruption in Audio during playback with speaker protection. |
| Memory corruption in display due to time-of-check time-of-use of metadata reserved size in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables |
| Denial of service in WLAN due to out-of-bound read happens while processing VHT action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking |