7.5
CVE-2025-27065 - Buffer Over-read in WLAN Firmware
Transient DOS while processing a frame with malformed shared-key descriptor.
7.8
CVE-2025-27062 - Improper Access Control in Automotive Multimedia
Memory corruption while handling client exceptions, allowing unauthorized channel access.
7.5
CVE-2025-21477 - Improper Input Validation in Modem
Transient DOS while processing CCCH data when NW sends data with invalid length.
7.8
CVE-2025-21474 - Use After Free in BTHOST
Memory corruption while processing commands from A2dp sink command queue.
7.8
CVE-2025-21473 - Time-of-check Time-of-use (TOCTOU) Race Condition in Camera_Linux
Memory corruption when using Virtual cdm (Camera Data Mover) to write registers.
5.5
CVE-2025-21472 - Leftover Debug Code in Secure Element
Information disclosure while capturing logs as eSE debug messages are logged.
6.5
CVE-2025-21465 - Out-of-bounds Read in Core
Information disclosure while processing the hash segment in an MBN file.
6.5
CVE-2025-21464 - Out-of-bounds Read in Core
Information disclosure while reading data from an image using specified offset and size parameters.
7.8
CVE-2025-21461 - Out-of-bounds Write in Camera_Linux
Memory corruption when programming registers through virtual CDM.
7.8
CVE-2025-21458 - Use After Free in NPU
Memory corruption when IOCTL interface is called to map and unmap buffers simultaneously.