CVE ID | Published | Description | Score | Severity |
---|---|---|---|---|
Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper. | 7.5 |
High |
||
Memory corruption when the captureRead QDCM command is invoked from user-space. | 8.4 |
High |
||
Memory corruption when Alternative Frequency offset value is set to 255. | 7.8 |
High |
||
Memory corruption while processing IOCTL handler in FastRPC. | 8.4 |
High |
||
Memory corruption in Graphics while processing user packets for command submission. | 8.4 |
High |
||
Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame. | 7.5 |
High |
||
Memory corruption in WLAN HAL while parsing WMI command parameters. | 7.8 |
High |
||
Memory corruption in WLAN HAL while handling command through WMI interfaces. | 7.8 |
High |
||
Memory Corruption in WLAN HOST while fetching TX status information. | 7.8 |
High |
||
Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message. | 7.8 |
High |
||
Memory Corruption in WLAN HOST while parsing QMI response message from firmware. | 7.8 |
High |
||
Memory Corruption in Audio while allocating the ion buffer during the music playback. | 8.4 |
High |
||
Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption. | 7.8 |
High |
||
Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory. | 7.8 |
High |
||
Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network. | 9.8 |
Critical |
||
Memory Corruption in Modem due to double free while parsing the PKCS15 sim files. | 6.8 |
Medium |
||
Information disclosure in DSP Services while loading dynamic module. | 6.2 |
Medium |