See how qualcomm compares to other vendors in security performance
Memory corruption while processing service requests.
Memory Corruption when asynchronous threads access shared performance counter data simultaneously during FastRPC invocations.
Privilege escalation due to weak configuration while temporary file handling.
Privilege escalation due to weak configuration during package extraction process.
Exposed dangerous function lead to privilege escalation via gRPC server.
Transient DOS while parsing frame during channel usage.
Memory Corruption when validating large data buffers from external sources using addition to check buffer length.
Information Disclosure when a pointer is reused after being deallocated.
Memory Corruption when copying unverified data from an external source exceeds the allocated buffer size.
Transient DOS when processing unverified data from a neighboring system causes out of bound memory access.
Transient DOS when processing large or numerous request buffers without sufficient memory allocation validation.
Memory corruption when processing escape handling flow with insufficient user buffer sizes.
Memory Corruption when processing I2C transfer requests due to a race condition between memory allocation and data copying.
Transient DOS when processing authentication frames with invalid FILS information element header lengths.
Memory corruption while processing rear sensor IOCTL calls.
Transient DOS when processing a channel map with insufficient used channels and adaptive frequency hopping is fully enabled.
Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and race conditions.
Memory Corruption when processing data with large offset and length values exceeds buffer limits during data copy operations.
Memory corruption when processing decode statistics due to insufficient validation of offset against structure size.
Memory Corruption when copying large input data exceeds normal allocation limits.
Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration.
Transient DOS when processing a short target wake time channel usage response frame with insufficient packet size.
Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed capabilities.
Memory Corruption while processing IOCTL device driver requests with invalid arguments.
Memory Corruption when handling malformed request parameters in the fingerprint TA.
Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.
Memory corruption while processing a packet with a size close to the maximum allowed value.
Memory Corruption when processing asynchronous input parameters due to improper handling of modified values between check and use.
Memory Corruption when processing invalid HT40 channel layouts during dynamic channel switching operations.
Cryptographic Issue when using a static initialization vector for AES-GCM key wrapping, which requires a unique value for each call to ensure security.