| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points. |
| Memory corruption while processing finish_sign command to pass a rsp buffer. |
| Memory corruption when the payload received from firmware is not as per the expected protocol size. |
| Transient DOS during hypervisor virtual I/O operation in a virtual machine. |
| Memory corruption when two threads try to map and unmap a single node simultaneously. |
| Memory corruption while processing IOCTL call for getting group info. |
| Memory corruption in Core Services while executing the command for removing a single event listener. |
| Memory corruption while invoking IOCTLs calls in Automotive Multimedia. |
| Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point. |
| Memory corruption when multiple listeners are being registered with the same file descriptor. |
| Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE. |
| Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibration command. |
| Information disclosure in Audio while accessing AVCS services from ADSP payload. |
| Transient DOS in Audio when invoking callback function of ASM driver. |
| Memory corruption while copying the result to the transmission queue which is shared between the virtual machine and the host. |
| Memory corruption in Core when updating rollback version for TA and OTA feature is enabled. |
| Memory corruption in Automotive Multimedia due to improper access control in HAB. |
| Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend. |
| Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image. |
| Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers through SMMU. |