Memory corruption while deinitializing a HDCP session.
Information disclosure while processing system calls with invalid parameters.
Memory corruption while processing a GP command response.
Information disclosure may occur while processing the hypervisor log.
Transient DOS while processing an ANQP message.
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
Memory corruption while redirecting log file to any file location with any file name.
Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number.
Transient DOS while parse fils IE with length equal to 1.
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains IPPROTONONE as the next header.
Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
Information disclosure in WLAN HAL while handling command through WMI interfaces.
Information disclosure in IOE Firmware while handling WMI command.
Transient DOS in WLAN Firmware while parsing rsn ies.
Memory corruption in WLAN HAL while handling command through WMI interfaces.
Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload.
Memory corruption due to improper validation of array index in WLAN HAL when received lmitemNum is out of range.
Memory corruption in WLAN HAL while parsing Rx buffer in processing TLV payload.
Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame.
information disclosure due to cryptographic issue in Core during RPMB read request.
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
Memory corruption in WLAN due to incorrect type cast while sending WMISCANSCHPRIOTBLCMDID message.
Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload.
Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
Transient DOS due to buffer over-read in WLAN while parsing WLAN CSA action frames.
Transient DOS due to buffer over-read in WLAN while processing 802.11 management frames.
Information disclosure due to buffer over-read in WLAN firmware while parsing security context info attributes. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Transient DOS due to loop with unreachable exit condition in WLAN while processing an incoming FTM frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking