Memory corruption in Audio during playback with speaker protection.
Permanent DOS in Hypervisor while untrusted VM without PSCI support makes a PSCI call.
Memory corruption in Data Modem when a non-standard SDP body, during a VOLTE call.
Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 address.
Information disclosure in Core services while processing a Diag command.
Transient DOS in WLAN Firmware while processing a FTMR frame.
Transient DOS while parsing WPA IES, when it is passed with length more than expected size.
Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.
Memory corruption in WLAN Host while processing RRM beacon on the AP.
Memory corruption when processing cmd parameters while parsing vdev.
Transient DOS when processing a NULL buffer while parsing WLAN vdev.
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast.
Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data.
Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while looking up peer ids.
Transient DOS in Modem after RRC Setup message is received.
Transient DOS in Modem when a Beam switch request is made with a non-configured BWP.
Transient DOS in Data modem while handling TLB control messages from the Network.
Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
Memory corruption while using the UIM diag command to get the operators name.
Memory corruption in HLOS while invoking IOCTL calls from user-space.
Memory corruption while sending SMS from AP firmware.
Memory corruption while loading an ELF segment in TEE Kernel.
Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.
Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.
Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM.
Memory Corruption in SPS Application while exporting public key in sorter TA.
Memory corruption in MPP performance while accessing DSM watermark using external memory address.
Transient DOS in WLAN Firmware while parsing t2lm buffers.