Memory corruption while processing control commands in the virtual memory management interface.
Memory corruption while processing a malformed license file during reboot.
Memory corruption during PlayReady APP usecase while processing TA commands.
Memory corruption while processing identity credential operations in the trusted application.
Memory corruption while deinitializing a HDCP session.
Memory corruption while processing a secure logging command in the trusted application.
Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation.
Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified.
Transient DOS when processing target power rate tables during channel configuration.
Memory corruption while routing GPR packets between user and root when handling large data packet.
Information disclosure while parsing the OCI IE with invalid length.
Memory corruption in display driver while detaching a device.
Information disclosure may occur due to improper permission and access controls to Video Analytics engine.
Transient DOS may occur while processing the country IE.
Memory corruption may occur while validating ports and channels in Audio driver.
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.
Transient DOS may occur while parsing SSID in action frames.
Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.
Cryptographic issues while generating an asymmetric key pair for RKP use cases.
Transient DOS may occur while parsing extended IE in beacon.
Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP.
Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesnt adhere to RFC standards.
Transient DOS may occur while parsing EHT operation IE or EHT capability IE.
Memory corruption while handling file descriptor during listener registration/de-registration.
Transient DOS while parsing per STA profile in ML IE.
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
Memory corruption during the FRS UDS generation process.
Memory corruption while reading secure file.
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to write null character at the end of buffer.