Memory corruption while selecting the PLMN from SOR failed list.
Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
Memory corruption in Modem while processing security related configuration before AS Security Exchange.
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
Memory corruption in HLOS while running playready use-case.
Memory corruption in Core while processing control functions.
Memory corruption in Core Services while executing the command for removing a single event listener.
Memory corruption due to double free in core while initializing the encryption key.
Cryptographic issue in Data Modem due to improper authentication during TLS handshake.
Memory corruption when decoding corrupted satellite data files with invalid signature offsets.
Memory corruption while loading an ELF segment in TEE Kernel.
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
Memory Corruption in Core while invoking a call to Access Control core library with hardware protected address range.
Memory Corruption in Core due to secure memory access by user while loading modem image.
Information Disclosure in data Modem while parsing an FMTP line in an SDP message.
Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value.
Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.
Memory corruption while routing GPR packets between user and root when handling large data packet.
Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Neighbor List Update message.
Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command length.
Memory corruption in MPP performance while accessing DSM watermark using external memory address.
Information disclosure while creating MQ channels.
Transient DOS while processing CCCH data when NW sends data with invalid length.
Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed capabilities.
Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.
Transient DOS in Modem while allocating DSM items.
Transient DOS due to improper authorization in Modem
Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.
Transient DOS while loading the TA ELF file.
Cryptographic issue while performing RSA PKCS padding decoding.