Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed capabilities.
Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling.
Transient DOS while processing CCCH data when NW sends data with invalid length.
Information disclosure while processing the hash segment in an MBN file.
Information disclosure while reading data from an image using specified offset and size parameters.
Memory corruption while selecting the PLMN from SOR failed list.
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.
Cryptographic issue while performing RSA PKCS padding decoding.
Memory corruption when decoding corrupted satellite data files with invalid signature offsets.
Transient DOS when MAC configures config id greater than supported maximum value.
Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.
Memory corruption while loading an ELF segment in TEE Kernel.
Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP.
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
There may be information disclosure during memory re-allocation in TZ Secure OS.
memory corruption when an invalid firehose patch command is invoked.
Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
Cryptographic issue in Data Modem due to improper authentication during TLS handshake.
Transient DOS in Modem while allocating DSM items.
Improper Access to the VM resource manager can lead to Memory Corruption.
Information Disclosure in data Modem while parsing an FMTP line in an SDP message.
Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value.
Memory corruption in Modem while processing security related configuration before AS Security Exchange.
Memory corruption in Core while processing control functions.
Memory corruption in Core Services while executing the command for removing a single event listener.
Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.