Memory corruption while processing Codec2 during v13k decoder pitch synthesis.
Memory corruption while selecting the PLMN from SOR failed list.
Memory corruption in Core while processing control functions.
Memory corruption in Core Services while executing the command for removing a single event listener.
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
Cryptographic issue occurs due to use of insecure connection method while downloading.
Memory corruption while configuring a Hypervisor based input virtual device.
Memory corruption when decoding corrupted satellite data files with invalid signature offsets.
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
Memory corruption while performing finish HMAC operation when context is freed by keymaster.
Memory corruption while processing IOCTL call to set metainfo.
Memory corruption while allocating memory in HGSL driver.
Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
Cryptographic issue may occur while encrypting license data.
Information disclosure while parsing the OCI IE with invalid length.
Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader.
Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.
Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.
Memory corruption in Core when updating rollback version for TA and OTA feature is enabled.
Memory corruption when allocating and accessing an entry in an SMEM partition.
Memory corruption while processing key blob passed by the user.
Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
Memory corruption when keymaster operation imports a shared key.
Memory corruption during session sign renewal request calls in HLOS.
Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.
Memory corruption while processing voice packet with arbitrary data received from ADSP.
Memory corruption during GNSS HAL process initialization.