Where
-Infinity
0
Severity
7.6
AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration.

First published (updated )
Severity
9.6
AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.

First published (updated )
Severity
7.5
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed capabilities.

First published (updated )
Severity
8.1
AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.

First published (updated )
Severity
6.5
AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling.

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Severity
5.3
AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L

Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values.

First published (updated )
Severity
5.3
AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L

Memory Corruption when handling flash commands due to outdated LED count values being used after userspace modification.

First published (updated )
Severity
5.3
AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L

Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.

First published (updated )
Severity
7.2
AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Memory Corruption when processing fastboot commands to set display mode.

First published (updated )
Severity
7.2
AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Memory corruption while processing fastboot commands with improperly formatted input.

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Severity
7.1
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow.

First published (updated )
Severity
7.2
AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Memory corruption while processing fastboot commands with invalid input.

First published (updated )
Severity
8.2
AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader.

First published (updated )
Severity
7.2
AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Memory corruption while processing fastboot OEM commands.

First published (updated )
Severity
7.2
AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Memory Corruption when processing display command line information due to improper initialization of a variable.

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Severity
6.4
AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

Memory Corruption when processing IOCTL requests with mismatched API versions due to concurrent modification of user-space buffer.

First published (updated )
Severity
5.5
AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:L

Information Disclosure when processing advertisement frames with malformed MBSSID elements of insufficient length.

First published (updated )
Severity
7.8
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Memory Corruption when processing device identifier strings that exceed the expected maximum length.

First published (updated )
Severity
7.8
Null Pointer Dereference
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Memory Corruption when running a memory copy operation due to invalid writes caused by a null pointer.

First published (updated )
Severity
7.8
Use After Free
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Memory Corruption when copying data from a freed source while executing performance counter deselect operation.

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Severity
7.8
AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:L

Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified.

First published (updated )
Severity
7.5
AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming.

First published (updated )
Severity
7.5
AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Transient DOS when processing target power rate tables during channel configuration.

First published (updated )
Severity
8.8
Integer Overflow
AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Memory corruption when decoding corrupted satellite data files with invalid signature offsets.

First published (updated )
Severity
7.8
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Memory corruption while processing a frame request from user.

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Severity
7.8
Integer Overflow
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Memory corruption while using alignments for memory allocation.

1 / 2
Source: MITRE
First published (updated )
Severity
7.8
Use After Free
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Memory Corruption while invoking IOCTL calls when concurrent access to shared buffer occurs.

First published (updated )
Severity
7.2
AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.

First published (updated )
Severity
7.8
Use After Free
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Memory Corruption when concurrent access to shared buffer occurs due to improper synchronization between assignment and deallocation of buffer resources.

First published (updated )
Severity
7.8
Use After Free
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Memory Corruption when accessing a buffer after it has been freed while processing IOCTL calls.

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203