CVE-2024-43056
Published Mar 3, 2025Transient DOS during hypervisor virtual I/O operation in a virtual machine.
Vendor/product archive
587 CVEs tagged to qualcomm / aqt1000_firmware — 63 Critical, 396 High, 128 Medium, 0 Low, 0 Unrated.
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
Information disclosure while deriving keys for a session for any Widevine use case.
Memory corruption while handling IOCTL call from user-space to set latency level.
Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer.
Memory corruption while configuring a Hypervisor based input virtual device.
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
Memory corruption when IOCTL call is invoked from user-space to read board data.
Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
Crafted Binder Request Causes Heap UAF in MediaServer
Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver.
Memory corruption when two threads try to map and unmap a single node simultaneously.
Memory corruption when user provides data for FM HCI command control operations.
Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
Transient DOS while handling PS event when Program Service name length offset value is set to 255.
Memory corruption when Alternative Frequency offset value is set to 255.
Cryptographic issue while parsing RSA keys in COBR format.
Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table.
Transient DOS while parsing ESP IE from beacon/probe response frame.
Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
Memory corruption when allocating and accessing an entry in an SMEM partition.
Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
Memory corruption while processing key blob passed by the user.
Transient DOS while loading the TA ELF file.