Transient DOS while processing an ANQP message.
Information disclosure while processing the hash segment in an MBN file.
Information disclosure while reading data from an image using specified offset and size parameters.
Stack out-of-bounds write occurs while setting up a cipher device if the provided IV length exceeds the max limit value in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Possible denial of service scenario due to improper handling of group management action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Reachable assertion is possible while processing peer association WLAN message from host and nonstandard incoming packet in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Memory corruption while loading an ELF segment in TEE Kernel.
Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.
Transient DOS may occur while parsing SSID in action frames.
There may be information disclosure during memory re-allocation in TZ Secure OS.
memory corruption when an invalid firehose patch command is invoked.
Transient DOS in WLAN Firmware while parsing a NAN management frame.
Transient DOS in Modem while allocating DSM items.
Transient DOS in WLAN Firmware while parsing rsn ies.
Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains IPPROTONONE as the next header.
Transient DOS in WLAN Firmware while parsing a BTM request.
Transient DOS while parse fils IE with length equal to 1.
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
Memory corruption in Core Services while executing the command for removing a single event listener.
Memory corruption while processing command in Glink linux.
Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption.
Memory Corruption in Core due to secure memory access by user while loading modem image.
Information Disclosure in Qualcomm IPC while reading values from shared memory in VM.
Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
Transient DOS while parsing WPA IES, when it is passed with length more than expected size.
Memory corruption when processing cmd parameters while parsing vdev.
Memory corruption in MPP performance while accessing DSM watermark using external memory address.
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
Transient DOS when processing a NULL buffer while parsing WLAN vdev.