CVE ID | Published | Description | Score | Severity |
---|---|---|---|---|
Memory corruption while processing GPU page table switch. | 7.8 |
High |
||
Memory corruption while processing voice packet with arbitrary data received from ADSP. | 7.8 |
High |
||
Transient DOS while handling PS event when Program Service name length offset value is set to 255. | 5.5 |
Medium |
||
Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus. | 6.2 |
Medium |
||
Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. | 7.8 |
High |
||
Memory corruption in Audio when memory map command is executed consecutively in ADSP. | 7.8 |
High |
||
Memory corruption in Audio during playback with speaker protection. | 8.4 |
High |
||
Memory corruption in HLOS while running playready use-case. | 9.3 |
Critical |
||
Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call. | 8.4 |
High |
||
Transient DOS in Bluetooth Host while rfc slot allocation. | 7.5 |
High |
||
Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments. | 7.8 |
High |
||
Memory corruption in MPP performance while accessing DSM watermark using external memory address. | 7.8 |
High |
||
Memory Corruption in SPS Application while exporting public key in sorter TA. | 7.8 |
High |
||
Memory Corruption in Multi-mode Call Processor while processing bit mask API. | 9.8 |
Critical |