Memory corruption while processing MBSSID beacon containing several subelement IE.
Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.
Memory corruption while processing Codec2 during v13k decoder pitch synthesis.
Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame.
Memory corruption during management frame processing due to mismatch in T2LM info element.
Memory corruption in WLAN Firmware while parsing receieved GTK Keys in GTK KDE.
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
Memory corruption in modem due to improper length check while copying into memory
Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.
Memory corruption in HLOS while running playready use-case.
Memory corruption in Core while processing control functions.
Memory corruption in Core Services while executing the command for removing a single event listener.
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
Memory corruption due to buffer copy without checking size of input while running memory sharing tests with large scattered memory.
Memory corruption in Core due to time-of-check time-of-use race condition during dump collection in trust zone.
Memory corruption due to double free in core while initializing the encryption key.
Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information.
Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment.
Memory Corruption in Core due to incorrect type conversion or cast in secureioread/write function in TEE.
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
Memory corruption in core services when Diag handler receives a command to configure event listeners.
Memory corruption while configuring a Hypervisor based input virtual device.
Memory corruption while loading an ELF segment in TEE Kernel.
Improper Access to the VM resource manager can lead to Memory Corruption.
Memory corruption while processing TPC target power table in FTM TPC.
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
Memory corruption as GPU registers beyond the last protected range can be accessed through LPAC submissions.
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
Memory corruption while handling user packets during VBO bind operation.
Memory corruption while performing finish HMAC operation when context is freed by keymaster.