Security Vulnerabilities
- CVEs Published In September 2025
Memory corruption due to double free when multiple threads race to set the timestamp store.
Memory corruption due to global buffer overflow when a test command uses an invalid payload type.
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.
Information disclosure while running video usecase having rogue firmware.
Memory corruption while selecting the PLMN from SOR failed list.
Information disclosure when Video engine escape input data is less than expected minimum size.
Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet.
Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.
Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.
information disclosure while invoking calibration data from user space to update firmware size.