Memory corruption while processing a malformed license file during reboot.
Memory corruption during PlayReady APP usecase while processing TA commands.
Information disclosure while processing the hash segment in an MBN file.
Information disclosure while reading data from an image using specified offset and size parameters.
There may be information disclosure during memory re-allocation in TZ Secure OS.
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
memory corruption when an invalid firehose patch command is invoked.
Transient DOS while loading the TA ELF file.
Memory corruption in Core while processing control functions.
Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.
Memory corruption in HLOS while running playready use-case.
Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
Memory corruption while loading an ELF segment in TEE Kernel.
Memory Corruption in SPS Application while exporting public key in sorter TA.
Memory corruption in MPP performance while accessing DSM watermark using external memory address.
Information disclosure in IOE Firmware while handling WMI command.
Memory Corruption in Core due to secure memory access by user while loading modem image.
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
Memory Corruption in Core due to incorrect type conversion or cast in secureioread/write function in TEE.
Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key.
Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network.
information disclosure due to cryptographic issue in Core during RPMB read request.
Transient DOS due to improper authorization in Modem
Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.
Memory corruption due to double free in core while initializing the encryption key.
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command length.
Memory corruption in Core due to time-of-check time-of-use race condition during dump collection in trust zone.
Memory corruption in WLAN due to incorrect type cast while sending WMISCANSCHPRIOTBLCMDID message.