Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed capabilities.
Information Disclosure when processing wireless network channel switch information with improperly formatted length fields.
Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling.
Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.
Memory Corruption when processing device identifier strings that exceed the expected maximum length.
Memory Corruption when running a memory copy operation due to invalid writes caused by a null pointer.
Memory Corruption when processing IOCTL requests with mismatched API versions due to concurrent modification of user-space buffer.
Memory Corruption when processing display command line information due to improper initialization of a variable.
Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader.
Memory corruption while processing fastboot commands with improperly formatted input.
Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.
Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.
Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values.
Transient DOS while processing an ANQP message.
Transient DOS while processing CCCH data when NW sends data with invalid length.
Information disclosure while processing the hash segment in an MBN file.
Information disclosure while reading data from an image using specified offset and size parameters.
Transient DOS while creating NDP instance.
Transient DOS while processing a frame with malformed shared-key descriptor.
Memory corruption while selecting the PLMN from SOR failed list.
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.
Transient DOS while parsing the EPTM test control message to get the test pattern.
Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.
Memory corruption while performing private key encryption in trusted application.
Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.
Memory corruption while processing a malformed license file during reboot.
Memory corruption during PlayReady APP usecase while processing TA commands.
Memory corruption while performing encryption and decryption commands.
Memory corruption while routing GPR packets between user and root when handling large data packet.